CVE-2025-7747: Tenda FH451 POST Request WizardHandle fromWizardHandle buffer overflow
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. This affects the function fromWizardHandle of the file /goform/WizardHandle of the component POST Request Handler. The manipulation of the argument PPW leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7747?
CVE-2025-7747 is classified as critical due to the potential for buffer overflow exploitation.
How do I fix CVE-2025-7747?
To fix CVE-2025-7747, update the Tenda FH451 firmware to the latest version provided by the vendor.
What systems are affected by CVE-2025-7747?
CVE-2025-7747 affects the Tenda FH451 router with version 1.0.0.9.
What type of vulnerability is CVE-2025-7747?
CVE-2025-7747 is a buffer overflow vulnerability in the POST Request Handler of the Tenda FH451.
Can CVE-2025-7747 allow remote code execution?
Yes, the buffer overflow in CVE-2025-7747 can potentially allow remote code execution if exploited.