CNNVD-202510-3651 Information

CNNVD ID

CNNVD-202510-3651

CVE-2025-12209

  • CNNVD Published: 2025-10-27

Description (Chinese)

Tenda O3是中国腾达(Tenda)公司的一个室外无线网桥。 Tenda O3 1.0.0.10版本存在安全漏洞,该漏洞源于文件/goform/setDhcpConfig中函数SetValue/GetValue对参数dhcpEn的错误操作,可能导致栈缓冲区溢出。

Description (English)

Tenda O3 is an outdoor wireless bridge at Tenda, China. There is a security loophole in the version Tenda O3.0.0.10, which stems from the error of the SetValue/GetValue against the parameter dhcpEn in the medium of file/goform/setDhcpConfig, which may result in spilling out of the fence.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

腾达

Published

2025-10-27

Last Modified

2026-02-24

References

https://vuldb.com/?submit.673263 https://github.com/noahze01/IoT-vulnerable/blob/main/Tenda/O3v2.0/setDhcpConfig.md https://www.tenda.com.cn/ https://vuldb.com/?ctiid.329879 https://vuldb.com/?id.329879

Share on: