CVE-2025-15045: Tenda WH450 HTTP Request Natlimit stack-based overflow
A flaw has been found in Tenda WH450 1.0.0.18. The affected element is an unknown function of the file /goform/Natlimit of the component HTTP Request Handler. This manipulation of the argument page causes stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15045?
CVE-2025-15045 is considered a high-severity vulnerability due to its potential for remote exploitation through a stack-based buffer overflow.
How do I fix CVE-2025-15045?
To fix CVE-2025-15045, users should update their Tenda WH450 devices to the latest firmware version provided by the manufacturer.
What are the potential impacts of CVE-2025-15045?
The potential impacts of CVE-2025-15045 include remote code execution and denial of service due to the exploitation of the buffer overflow.
Who is affected by CVE-2025-15045?
CVE-2025-15045 affects users of the Tenda WH450 router running version 1.0.0.18.
Is CVE-2025-15045 easy to exploit?
Yes, CVE-2025-15045 can be easily exploited remotely, making it a significant security risk.