CVE-2025-5080: Tenda FH451 webExcptypemanFilter stack-based overflow
Published May 22, 2025
·Updated
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function webExcptypemanFilter of the file /goform/webExcptypemanFilter. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
3 affected components
Tenda FH451
All of the following
Tenda Fh451 Firmware=1.0.0.9
Tenda FH451
Event History
May 22, 2025
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeaknessAffected Software
Aug 5, 57441
Event
via FIRST·07:50 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-5080?
CVE-2025-5080 is classified as a critical vulnerability.
2
How do I fix CVE-2025-5080?
To fix CVE-2025-5080, update the Tenda FH451 device firmware to the latest version provided by the manufacturer.
3
What type of vulnerability is CVE-2025-5080?
CVE-2025-5080 is a stack-based buffer overflow vulnerability.
4
Can CVE-2025-5080 be exploited remotely?
Yes, CVE-2025-5080 can be exploited remotely through manipulation of the argument in the affected function.
5
Which product is affected by CVE-2025-5080?
The affected product for CVE-2025-5080 is the Tenda FH451.