CVE-2025-9023
15.08.2025, 09:15
A vulnerability has been found in Tenda AC7 and AC18 15.03.05.19/15.03.06.44. Affected is the function formSetSchedLed of the file /goform/SetLEDCfg. The manipulation of the argument Time leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.Enginsight
| Vendor | Product | Version |
|---|---|---|
| tenda | ac7_firmware | 15.03.06.44 |
| tenda | ac18_firmware | 15.03.05.19 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References