First published: Tue May 06 2025(Updated: )
A vulnerability was found in Tenda AC1206 up to 15.03.06.23. It has been rated as critical. This issue affects the function setSchedWifi of the file /goform/openSchedWifi. The manipulation leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda AC1206 firmware | <15.03.06.23 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2025-4299 has been rated as critical.
CVE-2025-4299 allows for remote buffer overflow attacks via the function setSchedWifi in Tenda AC1206 firmware.
CVE-2025-4299 affects Tenda AC1206 devices running firmware versions up to 15.03.06.23.
To mitigate CVE-2025-4299, upgrade the Tenda AC1206 firmware to a version later than 15.03.06.23.
Yes, CVE-2025-4299 can be exploited remotely, posing a significant security risk.