CVE-2025-25343
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Feb 12, 2025
Updated: Feb 19, 2025
CWE ID 120
Summary
CVE-2025-25343 is a buffer overflow vulnerability affecting the formexeCommand function in Tenda AC6 V15.03.05.16 firmware. An attacker can exploit this vulnerability by sending specially crafted data to the affected device, resulting in memory corruption and potential code execution. This issue poses a serious risk as it could allow unauthorized access or system takeover. Users are advised to update their firmware to a patched version as soon as possible to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Shenzhen Tenda Technology Co. Ltd