Metrics
Affected Vendors & Products
Fri, 06 Jun 2025 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Tenda
Tenda ac10 Tenda ac10 Firmware |
|
CPEs | cpe:2.3:h:tenda:ac10:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac10_firmware:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Tenda
Tenda ac10 Tenda ac10 Firmware |
Thu, 05 Jun 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 05 Jun 2025 02:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, was found in Tenda AC10 up to 15.03.06.47. This affects the function formSetPPTPServer of the file /goform/SetPptpServerCfg of the component HTTP Handler. The manipulation of the argument startIp/endIp leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | Tenda AC10 HTTP SetPptpServerCfg formSetPPTPServer buffer overflow | |
Weaknesses | CWE-119 CWE-120 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-05T02:00:21.084Z
Updated: 2025-06-05T14:09:40.736Z
Reserved: 2025-06-04T11:19:57.609Z
Link: CVE-2025-5629

Updated: 2025-06-05T13:19:27.532Z

Status : Analyzed
Published: 2025-06-05T03:15:26.960
Modified: 2025-06-06T15:15:34.450
Link: CVE-2025-5629

No data.