CNNVD-202507-3269 Information

CNNVD ID

CNNVD-202507-3269

CVE-2025-8160

  • CNNVD Published: 2025-07-25

Description (Chinese)

Tenda AC20是中国腾达(Tenda)公司的一款无线路由器。 Tenda AC20 16.03.08.12及之前版本存在安全漏洞,该漏洞源于httpd组件中文件/goform/SetSysTimeCfg对参数timeZone的错误操作导致缓冲区溢出。

Description (English)

Tenda AC20 is a wireless router of Tenda China. There was a security loophole in Tenda AC20 16.03.08.12 and earlier versions, which stemmed from the error in the document/goform/SetSysTimeCfg in the httpd component, resulting in the spilling of the buffer zone over the parametertimeZone.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

腾达

Published

2025-07-25

Last Modified

2026-02-24

References

https://github.com/CH13hh/cve/blob/main/tenda1.md https://vuldb.com/?ctiid.317574 https://vuldb.com/?id.317574 https://vuldb.com/?submit.620625 https://www.tenda.com.cn/ https://access.redhat.com/security/cve/cve-2025-8160

Share on: