A stack-based buffer overflow vulnerability was discovered in Tenda AC18 v15.03.05.05_multi. The vulnerability exists in the guestSsid parameter of the /goform/WifiGuestSet interface. Remote attackers can exploit this vulnerability by sending oversized data to the guestSsid parameter, leading to denial of service (device crash) or potential remote code execution.
Metrics
Affected Vendors & Products
References
History
Wed, 12 Nov 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda ac18 |
|
| Vendors & Products |
Tenda
Tenda ac18 |
Mon, 10 Nov 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A stack-based buffer overflow vulnerability was discovered in Tenda AC18 v15.03.05.05_multi. The vulnerability exists in the guestSsid parameter of the /goform/WifiGuestSet interface. Remote attackers can exploit this vulnerability by sending oversized data to the guestSsid parameter, leading to denial of service (device crash) or potential remote code execution. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-11-10T00:00:00.000Z
Updated: 2025-11-10T16:37:05.468Z
Reserved: 2025-10-27T00:00:00.000Z
Link: CVE-2025-63835
No data.
Status : Awaiting Analysis
Published: 2025-11-10T17:15:35.960
Modified: 2025-11-12T16:19:59.103
Link: CVE-2025-63835
No data.