Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the startIp and endIp parameters at /goform/SetPptpServerCfg. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.
References
Link | Resource |
---|---|
https://github.com/2664521593/mycve/blob/main/Tenda/RX3/tenda_rx3_bof_4.pdf | Exploit |
Configurations
Configuration 1 (hide)
AND |
|
History
02 Apr 2025, 20:33
Type | Values Removed | Values Added |
---|---|---|
First Time |
Tendacn
Tendacn rx3 Tendacn rx3 Firmware |
|
References | () https://github.com/2664521593/mycve/blob/main/Tenda/RX3/tenda_rx3_bof_4.pdf - Exploit | |
CPE | cpe:2.3:o:tendacn:rx3_firmware:16.03.13.11_multi_tde01:*:*:*:*:*:*:* cpe:2.3:h:tendacn:rx3:1.0br:*:*:*:*:*:*:* |
19 Mar 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-404 | |
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
13 Mar 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-03-13 14:15
Updated : 2025-04-02 20:33
NVD link : CVE-2025-29357
Mitre link : CVE-2025-29357
CVE.ORG link : CVE-2025-29357
JSON object : View
Products Affected
tendacn
- rx3_firmware
- rx3
CWE
CWE-404
Improper Resource Shutdown or Release