CNNVD-202512-4859 Information

CNNVD ID

CNNVD-202512-4859

CVE-2025-15161

  • CNNVD Published: 2025-12-28

Description (Chinese)

Tenda WH450是中国腾达(Tenda)公司的一款无线接入点。 Tenda WH450 1.0.0.18版本存在安全漏洞,该漏洞源于文件/goform/PPTPUserSetting中对参数delno的错误操作,可能导致栈缓冲区溢出。

Description (English)

Tenda WH450 is a wireless access point for Tenda, China. There is a security loophole in the Tenda WH450 1.0.0.18 version, which stems from the error in the use of the parameter delno in the document/goform/PPTPUserSetting, which could lead to a spill out of the fence.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

腾达

Published

2025-12-28

Last Modified

2026-02-24

References

https://vuldb.com/?submit.720887 https://www.tenda.com.cn/ https://vuldb.com/?ctiid.338536 https://github.com/z472421519/BinaryAudit/blob/main/PoC/BOF/Tenda_WH450/PPTPUserSetting/PPTPUserSetting.md https://vuldb.com/?id.338536 https://access.redhat.com/security/cve/cve-2025-15161

Share on: