CNNVD-202508-1777 Information

CNNVD ID

CNNVD-202508-1777

CVE-2025-8980

  • CNNVD Published: 2025-08-14

Description (Chinese)

Tenda G1是中国腾达(Tenda)公司的一款企业级 Ap 管理路由器。 Tenda G1 16.01.7.8(3660)版本存在数据伪造问题漏洞,该漏洞源于固件更新处理组件中函数check_upload_file的数据真实性验证不足。

Description (English)

Tenda G1 is an enterprise-level Ap management router for Tenda, China. The version of Tenda G1 16.01.7.8(3660) contains a gap in data forgery, which arises from the insufficient validation of the data authenticity of the function check upload file in the solidware update processing component.

Hazard Level

High

Vulnerability Type

数据伪造问题

Affected Vendor

腾达

Published

2025-08-14

Last Modified

2026-02-24

References

https://vuldb.com/?id.319976 https://github.com/IOTRes/IOT_Firmware_Update/blob/main/Tenda/G1_Inte.md https://www.tenda.com.cn/ https://vuldb.com/?submit.628606 https://vuldb.com/?submit.628605 https://vuldb.com/?ctiid.319976 https://github.com/IOTRes/IOT_Firmware_Update/blob/main/Tenda/G1_Auth.md https://nvd.nist.gov/vuln/detail/CVE-2025-8980 https://access.redhat.com/security/cve/cve-2025-8980

Share on: