← Back

CVE-2025-63835

nvd nist
Published: Nov 10, 2025Modified: Nov 18, 2025

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

A stack-based buffer overflow vulnerability was discovered in Tenda AC18 v15.03.05.05_multi. The vulnerability exists in the guestSsid parameter of the /goform/WifiGuestSet interface. Remote attackers can exploit this vulnerability by sending oversized data to the guestSsid parameter, leading to denial of service (device crash) or potential remote code execution.

Affected (1)

Products: Tenda: Ac18 Firmware
1 product
Ac18 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 15.03.05.05
Running on/withPlatform Versions
Tenda
Ac18
All versions

Timeline

No history available yet.