CVE-2025-2991

CVSS 3.1 Score 6.2 of 10 (medium)

Details

Published Mar 31, 2025
Updated: Apr 7, 2025
CWE ID 835

Summary

CVE-2025-2991 is a critical vulnerability affecting Tenda FH1202 devices running version 1.2.0.14(408). The issue lies within an unknown function of the /goform/AdvSetWrlmacfilter file in the Web Management Interface. This vulnerability results in improper access controls, allowing unauthorized access. Attacks can be executed remotely, and the exploit has already been disclosed to the public, increasing the threat level.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share