CVE-2025-7805: Tenda FH451 PPTPUserSetting fromPptpUserSetting stack-based overflow
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. This affects the function fromPptpUserSetting of the file /goform/PPTPUserSetting. The manipulation of the argument delno leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7805?
CVE-2025-7805 is classified as a critical vulnerability.
How can CVE-2025-7805 be exploited?
CVE-2025-7805 can be exploited by manipulating the delno argument in the fromPptpUserSetting function, leading to a stack-based buffer overflow.
Which device is affected by CVE-2025-7805?
CVE-2025-7805 affects the Tenda FH451 running version 1.0.0.9.
Is remote exploitation possible for CVE-2025-7805?
Yes, CVE-2025-7805 can be exploited remotely.
How do I fix CVE-2025-7805?
To fix CVE-2025-7805, update the Tenda FH451 to the latest version provided by the manufacturer.