CVE-2025-7506: Tenda FH451 HTTP POST Request Natlimit fromNatlimit stack-based overflow
A vulnerability classified as critical was found in Tenda FH451 1.0.0.9. Affected by this vulnerability is the function fromNatlimit of the file /goform/Natlimit of the component HTTP POST Request Handler. The manipulation of the argument page leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7506?
CVE-2025-7506 is classified as a critical severity vulnerability.
How do I fix CVE-2025-7506?
To fix CVE-2025-7506, update the Tenda FH451 device to the latest firmware version provided by Tenda.
What does CVE-2025-7506 affect?
CVE-2025-7506 affects the Tenda FH451 router, specifically the function fromNatlimit in the HTTP POST Request Handler.
What type of vulnerability is CVE-2025-7506?
CVE-2025-7506 is a stack-based buffer overflow vulnerability.
What are the potential impacts of CVE-2025-7506?
The potential impacts of CVE-2025-7506 include unauthorized access, system crashes, and remote code execution.