CVE-2025-29031
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Mar 14, 2025
Updated: Mar 19, 2025
CWE ID 787
Summary
CVE-2025-29031 is a newly discovered buffer overflow vulnerability affecting the Tenda AC6 v15.03.05.16 firmware. The issue lies within the fromAddressNat function, which can be exploited by malicious actors to inject and execute arbitrary code. Successful exploitation could lead to a complete takeover of the affected device, potentially enabling unauthorized access to the network and sensitive data. Users are advised to update their firmware to a newer, secure version as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Tenda AC6
Affected Vendors
- Shenzhen Tenda Technology Co. Ltd