CVE-2025-2991
CVSS 3.1 Score 6.2 of 10 (medium)
Details
Published Mar 31, 2025
Updated: Apr 7, 2025
CWE ID 835
Summary
CVE-2025-2991 is a critical vulnerability affecting Tenda FH1202 devices running version 1.2.0.14(408). The issue lies within an unknown function of the /goform/AdvSetWrlmacfilter file in the Web Management Interface. This vulnerability results in improper access controls, allowing unauthorized access. Attacks can be executed remotely, and the exploit has already been disclosed to the public, increasing the threat level.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.