CNNVD-202512-2480 Information

CNNVD ID

CNNVD-202512-2480

CVE-2025-14636

  • CNNVD Published: 2025-12-13

Description (Chinese)

Tenda AX9是中国腾达(Tenda)公司的一款 Wi-Fi 6路由器。 Tenda AX9 22.03.01.46版本存在安全漏洞,该漏洞源于httpd组件中image_check函数使用弱哈希,可能导致远程攻击。

Description (English)

Tenda AX9 is a Wi-Fi 6 router of Tenda, China. Version 22.03.01.46 of Tenda AX9 contains a security loophole that originates from the use of weak Hashi in the image check function of the httpd component, which could lead to a remote attack.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

腾达

Published

2025-12-13

Last Modified

2026-02-24

References

https://vuldb.com/?id.336361 https://github.com/IOTRes/IOT_Firmware_Update/blob/main/Tenda/AX9_Inte.md https://vuldb.com/?ctiid.336361 https://www.tenda.com.cn/ https://vuldb.com/?submit.707213 https://access.redhat.com/security/cve/cve-2025-14636

Share on: