CVE-2025-11528: Tenda AC7 saveAutoQos stack-based overflow
A vulnerability was identified in Tenda AC7 15.03.06.44. This affects an unknown function of the file /goform/saveAutoQos. The manipulation of the argument enable leads to stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-11528?
CVE-2025-11528 has a high severity rating due to its potential for remote exploitation through stack-based buffer overflow.
How do I fix CVE-2025-11528?
To fix CVE-2025-11528, you should update the Tenda AC7 firmware to the latest version released by Tenda that addresses this vulnerability.
Who is affected by CVE-2025-11528?
CVE-2025-11528 affects users of the Tenda AC7 router running firmware version 15.03.06.44.
What are the potential impacts of CVE-2025-11528?
The impact of CVE-2025-11528 includes unauthorized remote access and control over the affected device due to stack-based buffer overflow.
Is there public exploit code available for CVE-2025-11528?
Yes, there is publicly available exploit code for CVE-2025-11528 which increases the risk of targeted attacks.