CVE-2025-44899

There is a stack overflow vulnerability in Tenda RX3 V1.0br_V16.03.13.11 In the fromSetWifiGusetBasic function of the web url /goform/ WifiGuestSet, the manipulation of the parameter shareSpeed leads to stack overflow.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tenda:rx3_firmware:16.03.13.11_multi:*:*:*:*:*:*:*
cpe:2.3:h:tenda:rx3:1.0:*:*:*:*:*:*:*

History

04 Jun 2025, 17:25

Type Values Removed Values Added
First Time Tenda
Tenda rx3 Firmware
Tenda rx3
References () https://github.com/faqiadegege/IoTVuln/blob/main/tenda_RX3_fromSetWifiGusetBasic_shareSpeed_overflow/detail.md - () https://github.com/faqiadegege/IoTVuln/blob/main/tenda_RX3_fromSetWifiGusetBasic_shareSpeed_overflow/detail.md - Third Party Advisory
CPE cpe:2.3:o:tenda:rx3_firmware:16.03.13.11_multi:*:*:*:*:*:*:*
cpe:2.3:h:tenda:rx3:1.0:*:*:*:*:*:*:*

07 May 2025, 14:15

Type Values Removed Values Added
Summary
  • (es) Hay una vulnerabilidad de desbordamiento de pila en Tenda RX3 V1.0br_V16.03.13.11 En la función fromSetWifiGusetBasic de la URL web /goform/ WifiGuestSet, la manipulación del parámetro shareSpeed provoca un desbordamiento de pila.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-121

06 May 2025, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-06 21:16

Updated : 2025-06-04 17:25


NVD link : CVE-2025-44899

Mitre link : CVE-2025-44899

CVE.ORG link : CVE-2025-44899


JSON object : View

Products Affected

tenda

  • rx3
  • rx3_firmware
CWE
CWE-121

Stack-based Buffer Overflow