CVE-2025-15007: Tenda WH450 HTTP Request L7Im stack-based overflow
A security vulnerability has been detected in Tenda WH450 1.0.0.18. Affected by this issue is some unknown functionality of the file /goform/L7Im of the component HTTP Request Handler. Such manipulation of the argument page leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15007?
CVE-2025-15007 is classified as a high severity vulnerability due to its potential for stack-based buffer overflow exploitation.
How do I fix CVE-2025-15007?
To fix CVE-2025-15007, you should update the Tenda WH450 firmware to the latest version provided by the vendor.
What systems are affected by CVE-2025-15007?
CVE-2025-15007 affects Tenda WH450 devices running firmware version 1.0.0.18.
What is the impact of CVE-2025-15007?
The impact of CVE-2025-15007 includes potential unauthorized access and control over the affected device through a buffer overflow.
Can CVE-2025-15007 be exploited remotely?
Yes, CVE-2025-15007 can potentially be exploited remotely via crafted HTTP requests targeting vulnerable devices.