A security vulnerability has been detected in Tenda AC18...
High severity
Unreviewed
Published
Dec 21, 2025
to the GitHub Advisory Database
•
Updated Dec 21, 2025
Description
Published by the National Vulnerability Database
Dec 21, 2025
Published to the GitHub Advisory Database
Dec 21, 2025
Last updated
Dec 21, 2025
A security vulnerability has been detected in Tenda AC18 15.03.05.05. The impacted element is the function strcpy of the file /goform/GetParentControlInfo of the component HTTP Request Handler. The manipulation of the argument mac leads to stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.
References