First published: Mon Mar 24 2025(Updated: )
A stack-based buffer overflow vulnerability in Tenda AC7 V15.03.06.44 allows a remote attacker to execute arbitrary code through a stack overflow attack using the security parameter of the formWifiBasicSet function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda AC7/AC9/AC10 Routers | ||
All of | ||
Tenda AC7 | =15.03.06.44 | |
Tenda AC7/AC9/AC10 Routers | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-29135 is classified as a critical vulnerability due to its potential for remote code execution.
To mitigate CVE-2025-29135, users should update their Tenda AC7 router firmware to the latest version provided by the vendor.
CVE-2025-29135 affects Tenda AC7 routers running firmware version V15.03.06.44.
Yes, CVE-2025-29135 can be exploited remotely by an attacker through a crafted request.
CVE-2025-29135 is a stack-based buffer overflow vulnerability.