A vulnerability was found in Tenda A15 15.13.07.09/15.13.07.13. It has been classified as critical. This affects an unknown part of the file /goform/multimodalAdd of the component HTTP POST Request Handler. The manipulation leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
References
Link | Resource |
---|---|
https://github.com/byxs0x0/cve2/blob/main/tenda%20AC15.md | Broken Link |
https://vuldb.com/?ctiid.309453 | Permissions Required VDB Entry |
https://vuldb.com/?id.309453 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.578035 | Third Party Advisory VDB Entry |
https://www.tenda.com.cn/ | Product |
Configurations
Configuration 1 (hide)
AND |
|
History
27 May 2025, 16:30
Type | Values Removed | Values Added |
---|---|---|
First Time |
Tenda a15 Firmware
Tenda a15 Tenda |
|
CPE | cpe:2.3:o:tenda:a15_firmware:15.13.07.09:*:*:*:*:*:*:* cpe:2.3:h:tenda:a15:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:a15_firmware:15.13.07.13:*:*:*:*:*:*:* |
|
Summary |
|
|
References | () https://github.com/byxs0x0/cve2/blob/main/tenda%20AC15.md - Broken Link | |
References | () https://vuldb.com/?ctiid.309453 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?id.309453 - Third Party Advisory, VDB Entry | |
References | () https://vuldb.com/?submit.578035 - Third Party Advisory, VDB Entry | |
References | () https://www.tenda.com.cn/ - Product |
18 May 2025, 22:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-18 22:15
Updated : 2025-05-27 16:30
NVD link : CVE-2025-4897
Mitre link : CVE-2025-4897
CVE.ORG link : CVE-2025-4897
JSON object : View
Products Affected
tenda
- a15
- a15_firmware