CVE-2025-57572

Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the onlineList parameter in goform/setParentControl.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tenda:f3_firmware:12.01.01.48:*:*:*:*:*:*:*
cpe:2.3:h:tenda:f3:-:*:*:*:*:*:*:*

History

17 Sep 2025, 20:58

Type Values Removed Values Added
First Time Tenda
Tenda f3 Firmware
Tenda f3
References () http://tenda.com - () http://tenda.com - Not Applicable
References () https://github.com/arashiclustar/PingX-md/blob/main/F3/2025-57572/C.V.E-2025-57572.md - () https://github.com/arashiclustar/PingX-md/blob/main/F3/2025-57572/C.V.E-2025-57572.md - Broken Link
CPE cpe:2.3:h:tenda:f3:-:*:*:*:*:*:*:*
cpe:2.3:o:tenda:f3_firmware:12.01.01.48:*:*:*:*:*:*:*

10 Sep 2025, 21:15

Type Values Removed Values Added
CWE CWE-120
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.6

10 Sep 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-10 16:15

Updated : 2025-09-17 20:58


NVD link : CVE-2025-57572

Mitre link : CVE-2025-57572

CVE.ORG link : CVE-2025-57572


JSON object : View

Products Affected

tenda

  • f3_firmware
  • f3
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')