First published: Fri Mar 28 2025(Updated: )
Tenda W6_S v1.0.0.4_510 has a Buffer Overflow vulnerability in the set_local_time function, which allows remote attackers to cause web server crash via parameter time passed to the binary through a POST request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda W6_S |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-28221 has a high severity due to the potential for remote attackers to exploit the buffer overflow vulnerability.
To fix CVE-2025-28221, update your Tenda W6_S to the latest firmware version provided by the manufacturer.
CVE-2025-28221 may lead to a denial of service by crashing the web server when exploited.
Users of Tenda W6_S version 1.0.0.4_510 are specifically affected by CVE-2025-28221.
The buffer overflow vulnerability in CVE-2025-28221 allows remote attackers to crash the web server by sending a malicious POST request.