CVE-2025-44172: Medium severity tenda ac6 v2.0 vulnerability
Published Jun 2, 2025
·Updated
Tenda AC6 V15.03.05.16 was discovered to contain a stack overflow via the time parameter in the setSmartPowerManagement function.
Affected Software
3 affected components
Tenda AC6
All of the following
Tenda Ac6 Firmware=15.03.05.16
Tenda AC6=1.0
Event History
Jun 2, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-44172?
CVE-2025-44172 has been rated with a high severity due to the potential for remote code execution from the stack overflow.
2
How do I fix CVE-2025-44172?
To fix CVE-2025-44172, update the Tenda AC6 firmware to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2025-44172?
CVE-2025-44172 specifically affects Tenda AC6 firmware version 15.03.05.16.
4
What type of vulnerability is CVE-2025-44172?
CVE-2025-44172 is classified as a stack overflow vulnerability related to improper handling of the time parameter.
5
Can CVE-2025-44172 be exploited remotely?
Yes, CVE-2025-44172 can be exploited remotely, allowing an attacker to execute arbitrary code on the vulnerable device.