Metrics
Affected Vendors & Products
Thu, 06 Mar 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Tenda
Tenda a18 Tenda a18 Firmware |
|
Weaknesses | CWE-787 | |
CPEs | cpe:2.3:h:tenda:a18:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:a18_firmware:15.13.07.09:*:*:*:*:*:*:* |
|
Vendors & Products |
Tenda
Tenda a18 Tenda a18 Firmware |
Thu, 30 Jan 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 30 Jan 2025 01:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Tenda A18 up to 15.13.07.09. It has been rated as critical. This issue affects the function SetCmdlineRun of the file /goform/SetCmdlineRun of the component HTTP POST Request Handler. The manipulation of the argument wpapsk_crypto5g leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |
Title | Tenda A18 HTTP POST Request SetCmdlineRun stack-based overflow | |
Weaknesses | CWE-119 CWE-121 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-01-30T15:12:59.662Z
Reserved: 2025-01-29T17:09:28.802Z
Link: CVE-2025-0848

Updated: 2025-01-30T15:12:25.494Z

Status : Analyzed
Published: 2025-01-30T02:15:25.597
Modified: 2025-03-06T13:30:34.893
Link: CVE-2025-0848

No data.