CVE-2025-9046: Tenda AC20 setMacFilterCfg sub_46A2AC stack-based overflow
A vulnerability was identified in Tenda AC20 16.03.08.12. This issue affects the function sub46A2AC of the file /goform/setMacFilterCfg. The manipulation of the argument deviceList leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9046?
CVE-2025-9046 is considered a critical vulnerability due to its potential for remote exploitation leading to stack-based buffer overflow.
How do I fix CVE-2025-9046?
To fix CVE-2025-9046, users should update their Tenda AC20 router firmware to the latest version provided by Tenda.
What are the potential impacts of CVE-2025-9046?
The potential impacts of CVE-2025-9046 include unauthorized access and control over the affected Tenda AC20 device.
Who is affected by CVE-2025-9046?
CVE-2025-9046 affects users of Tenda AC20 firmware version 16.03.08.12 and earlier.
Can CVE-2025-9046 be exploited remotely?
Yes, CVE-2025-9046 can be exploited remotely, allowing attackers to initiate the attack from a distance.