Vulnerabilities > CVE-2025-3161 - Stack-based Buffer Overflow vulnerability in Tenda Ac10 Firmware 16.03.10.13
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. This issue affects the function ShutdownSetAdd of the file /goform/ShutdownSetAdd. The manipulation of the argument list leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 1 | |
Hardware | 1 |
Common Weakness Enumeration (CWE)
References
- https://github.com/LxxxtSec/CVE/blob/main/CVE_1.md
- https://github.com/LxxxtSec/CVE/blob/main/CVE_1.md#vulnerability-proof-supplement-remote-code-execution-rce
- https://pan.baidu.com/s/1_zhGlS0fFhz0Pkh8svljjA?pwd=viwq
- https://vuldb.com/?ctiid.303107
- https://vuldb.com/?id.303107
- https://vuldb.com/?submit.542437
- https://www.tenda.com.cn/