CVE-2025-9791: Tenda AC20 fromAdvSetMacMtuWan stack-based overflow
A weakness has been identified in Tenda AC20 16.03.08.05. This vulnerability affects unknown code of the file /goform/fromAdvSetMacMtuWan. This manipulation of the argument wanMTU causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be exploited.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9791?
CVE-2025-9791 has a high severity due to its potential for remote exploitation via a stack-based buffer overflow.
How do I fix CVE-2025-9791?
To address CVE-2025-9791, update the Tenda AC20 firmware to the latest version provided by the vendor.
Who is affected by CVE-2025-9791?
CVE-2025-9791 affects users of the Tenda AC20 router running firmware version 16.03.08.05.
Can CVE-2025-9791 be exploited remotely?
Yes, remote exploitation of CVE-2025-9791 is possible due to the nature of the vulnerability.
What coding component is vulnerable in CVE-2025-9791?
CVE-2025-9791 involves a weakness in the handling of the 'wanMTU' argument in the file '/goform/fromAdvSetMacMtuWan'.