CVE-2025-12618: Tenda AC8 DatabaseIniSet buffer overflow
A vulnerability has been found in Tenda AC8 16.03.34.06. This impacts an unknown function of the file /goform/DatabaseIniSet. The manipulation of the argument Time leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-12618?
CVE-2025-12618 has been classified as a high-severity vulnerability due to its potential for remote exploitation.
How do I fix CVE-2025-12618?
To remediate CVE-2025-12618, users should update their Tenda AC8 devices to the latest firmware version provided by the manufacturer.
What type of attack vectors are associated with CVE-2025-12618?
CVE-2025-12618 is vulnerable to remote code execution attacks due to buffer overflow caused by manipulated arguments.
Is CVE-2025-12618 actively being exploited?
Reports indicate that CVE-2025-12618 is publicly disclosed and may be subject to active exploitation.
Which devices are affected by CVE-2025-12618?
CVE-2025-12618 specifically affects the Tenda AC8 router model.