CVE-2025-15252 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A flaw has been found in Tenda M3 1.0.0.13(4903). The affected element is the function formSetRemoteDhcpForAp of the file /goform/setDhcpAP. This manipulation o…
High CVSS: 7.4

CVE-2025-15252

A flaw has been found in Tenda M3 1.0.0.13(4903). The affected element is the function formSetRemoteDhcpForAp of the file /goform/setDhcpAP. This manipulation of the argument startip/endip/leasetime/gateway/dns1/dns2 causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been published and may be used.
Vendor
Tenda
Product
M3 Firmware
CWE
CWE-119
Yayın Tarihi
2025-12-30 15:15:43
Güncelleme
2026-01-02 21:18:09
Source Identifier
cna@vuldb.com
KEV Date Added
-

Kategoriler

Referanslar