CVE-2025-46629
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Exploitability: 3.9 / Impact: 2.5
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)
Description
Lack of access controls in the 'ate' management binary of the Tenda RX2 Pro 16.03.30.14 allows an unauthenticated remote attacker to perform unauthorized configuration changes for any router where 'ate' has been enabled by sending a crafted UDP packet
Affected (1)
Products: Tenda: Rx2 Pro Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 16.03.30.14 |
| Running on/with | Platform Versions |
|---|---|
Tenda Rx2 Pro | All versions |
References (2)
Source: cve@mitre.org
ExploitThird Party Advisory
Timeline
No history available yet.