CVE-2025-44900

In Tenda RX3 V1.0br_V16.03.13.11 in the GetParentControlInfo function of the web url /goform/GetParentControlInfo, the manipulation of the parameter mac leads to stack overflow.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tenda:rx3_firmware:16.03.13.11_multi:*:*:*:*:*:*:*
cpe:2.3:h:tenda:rx3:1.0:*:*:*:*:*:*:*

History

04 Jun 2025, 17:25

Type Values Removed Values Added
First Time Tenda
Tenda rx3 Firmware
Tenda rx3
References () https://github.com/faqiadegege/IoTVuln/blob/main/tenda_Rx3_GetParentControlInfo_mac_overflow/detail.md - () https://github.com/faqiadegege/IoTVuln/blob/main/tenda_Rx3_GetParentControlInfo_mac_overflow/detail.md - Third Party Advisory
CPE cpe:2.3:o:tenda:rx3_firmware:16.03.13.11_multi:*:*:*:*:*:*:*
cpe:2.3:h:tenda:rx3:1.0:*:*:*:*:*:*:*

07 May 2025, 14:13

Type Values Removed Values Added
Summary
  • (es) En Tenda RX3 V1.0br_V16.03.13.11 en la función GetParentControlInfo de la URL web /goform/GetParentControlInfo, la manipulación del parámetro mac provoca un desbordamiento de pila.

06 May 2025, 21:16

Type Values Removed Values Added
CWE CWE-121
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

06 May 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-06 18:15

Updated : 2025-06-04 17:25


NVD link : CVE-2025-44900

Mitre link : CVE-2025-44900

CVE.ORG link : CVE-2025-44900


JSON object : View

Products Affected

tenda

  • rx3
  • rx3_firmware
CWE
CWE-121

Stack-based Buffer Overflow