A vulnerability was identified in Tenda AC21 16.03.08.16. This vulnerability affects the function formSetPPTPServer of the file /goform/SetPptpServerCfg. The manipulation of the argument startIp leads to buffer overflow. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.
References
Configurations
No configuration.
History
03 Nov 2025, 03:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-03 03:15
Updated : 2025-11-04 15:41
NVD link : CVE-2025-12611
Mitre link : CVE-2025-12611
CVE.ORG link : CVE-2025-12611
JSON object : View
Products Affected
No product.
