CVE-2025-25343

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Feb 12, 2025
Updated: Feb 19, 2025
CWE ID 120

Summary

CVE-2025-25343 is a buffer overflow vulnerability affecting the formexeCommand function in Tenda AC6 V15.03.05.16 firmware. An attacker can exploit this vulnerability by sending specially crafted data to the affected device, resulting in memory corruption and potential code execution. This issue poses a serious risk as it could allow unauthorized access or system takeover. Users are advised to update their firmware to a patched version as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share