CVE-2025-45779: Buffer Overflow
Published May 12, 2025
·Updated
Tenda AC10 V1.0reV15.03.06.46 is vulnerable to Buffer Overflow in the formSetPPTPUserList handler via the list POST parameter.
Affected Software
3 affected components
Tenda AC10
All of the following
Tenda Ac10 Firmware=15.03.06.46
Tenda AC10=1.0
Event History
May 12, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2025-45779?
CVE-2025-45779 is classified as a critical vulnerability due to its potential for remote exploitation via buffer overflow.
2
How do I fix CVE-2025-45779?
To mitigate CVE-2025-45779, update the Tenda AC10 to the latest firmware version provided by the manufacturer.
3
What devices are affected by CVE-2025-45779?
CVE-2025-45779 specifically affects the Tenda AC10 routers with firmware version V15.03.06.46.
4
What kind of attack can exploit CVE-2025-45779?
CVE-2025-45779 can be exploited through crafted POST requests that manipulate the list parameter to cause a buffer overflow.
5
Is there a workaround for CVE-2025-45779 if I can't update my device immediately?
As a temporary measure, disable the PPTP service on the Tenda AC10 until a firmware update can be applied to prevent exploitation.