CVE-2025-7505: Tenda FH451 HTTP POST Request L7Prot frmL7ProtForm stack-based overflow
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function frmL7ProtForm of the file /goform/L7Prot of the component HTTP POST Request Handler. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7505?
CVE-2025-7505 is classified as a critical vulnerability.
How do I fix CVE-2025-7505?
To fix CVE-2025-7505, update the Tenda FH451 firmware to the latest version.
What component is affected by CVE-2025-7505?
CVE-2025-7505 affects the HTTP POST Request Handler in the Tenda FH451 router.
What is the nature of the vulnerability in CVE-2025-7505?
CVE-2025-7505 involves a stack-based buffer overflow caused by improper handling of the argument page.
Can CVE-2025-7505 be exploited remotely?
Yes, CVE-2025-7505 can potentially be exploited remotely due to its nature as a buffer overflow vulnerability.