Stack Overflow Vulnerability in Tenda AC8 Router Firmware
CVE-2025-25664
9.8CRITICAL
Summary
The Tenda AC8 router with firmware version V16.03.34.06 is affected by a stack overflow vulnerability that occurs in the sub_49E098 function through the shareSpeed parameter. Exploiting this vulnerability can allow an attacker to execute arbitrary code, potentially compromising the integrity and confidentiality of network communications. It is essential for users of affected versions to apply necessary patches and updates provided by Tenda to mitigate this risk.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved