A vulnerability has been found in Tenda AC6 15.03.06.50 and classified as critical. Affected by this vulnerability is the function setparentcontrolinfo of the component httpd. The manipulation leads to buffer overflow. The attack can be launched remotely.
References
Link | Resource |
---|---|
https://github.com/gaochen61/IoTVuln/blob/main/Tenda_AC6_V15.03.06.50/setparentcontrolinfo.md | Third Party Advisory |
https://vuldb.com/?ctiid.317029 | Permissions Required |
https://vuldb.com/?id.317029 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.618859 | Third Party Advisory VDB Entry |
https://www.tenda.com.cn/ | Product |
Configurations
Configuration 1 (hide)
AND |
|
History
23 Jul 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
First Time |
Tenda ac6 Firmware
Tenda Tenda ac6 |
|
CPE | cpe:2.3:o:tenda:ac6_firmware:15.03.06.50:*:*:*:*:*:*:* cpe:2.3:h:tenda:ac6:2.0:*:*:*:*:*:*:* |
|
References | () https://github.com/gaochen61/IoTVuln/blob/main/Tenda_AC6_V15.03.06.50/setparentcontrolinfo.md - Third Party Advisory | |
References | () https://vuldb.com/?ctiid.317029 - Permissions Required | |
References | () https://vuldb.com/?id.317029 - Third Party Advisory, VDB Entry | |
References | () https://vuldb.com/?submit.618859 - Third Party Advisory, VDB Entry | |
References | () https://www.tenda.com.cn/ - Product |
22 Jul 2025, 13:06
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
21 Jul 2025, 01:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-21 01:15
Updated : 2025-07-23 16:15
NVD link : CVE-2025-7914
Mitre link : CVE-2025-7914
CVE.ORG link : CVE-2025-7914
JSON object : View
Products Affected
tenda
- ac6_firmware
- ac6