CVE-2025-7423: Tenda O3V2 httpd setWrlFilterList formWifiMacFilterSet stack-based overflow
A vulnerability classified as critical was found in Tenda O3V2 1.0.0.12(3880). Affected by this vulnerability is the function formWifiMacFilterSet of the file /goform/setWrlFilterList of the component httpd. The manipulation of the argument macList leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7423?
CVE-2025-7423 is classified as a critical vulnerability.
How do I fix CVE-2025-7423?
To fix CVE-2025-7423, it is recommended to update the Tenda O3V2 device to the latest firmware version.
What components are affected by CVE-2025-7423?
CVE-2025-7423 affects the formWifiMacFilterSet function in the httpd component of Tenda O3V2.
What type of vulnerability is CVE-2025-7423?
CVE-2025-7423 is a stack-based buffer overflow vulnerability.
Can CVE-2025-7423 be exploited remotely?
Yes, CVE-2025-7423 can potentially be exploited remotely due to its nature of exploitation through the affected function.