CVE-2025-15161: Tenda WH450 PPTPUserSetting stack-based overflow
A vulnerability was found in Tenda WH450 1.0.0.18. Affected is an unknown function of the file /goform/PPTPUserSetting. Performing a manipulation of the argument delno results in stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15161?
CVE-2025-15161 is classified as a critical vulnerability due to the potential for remote exploitation leading to a stack-based buffer overflow.
How do I fix CVE-2025-15161?
To fix CVE-2025-15161, it is recommended to update the Tenda WH450 router firmware to the latest version that addresses this vulnerability.
Who is affected by CVE-2025-15161?
CVE-2025-15161 affects users of the Tenda WH450 router running firmware version 1.0.0.18.
What components are involved in CVE-2025-15161?
CVE-2025-15161 involves the /goform/PPTPUserSetting file of the Tenda WH450 router.
Can CVE-2025-15161 be exploited remotely?
Yes, CVE-2025-15161 can be exploited remotely by manipulating arguments, leading to a stack-based buffer overflow.