Metrics
Affected Vendors & Products
Tue, 30 Dec 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 30 Dec 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in Tenda M3 1.0.0.13(4903). The affected element is the function formSetRemoteDhcpForAp of the file /goform/setDhcpAP. This manipulation of the argument startip/endip/leasetime/gateway/dns1/dns2 causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been published and may be used. | |
| Title | Tenda M3 setDhcpAP formSetRemoteDhcpForAp stack-based overflow | |
| Weaknesses | CWE-119 CWE-121 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-12-30T14:42:52.886Z
Reserved: 2025-12-29T09:16:57.696Z
Link: CVE-2025-15252
Updated: 2025-12-30T14:42:48.635Z
Status : Received
Published: 2025-12-30T15:15:43.857
Modified: 2025-12-30T15:15:43.857
Link: CVE-2025-15252
No data.
OpenCVE Enrichment
No data.