Buffer Overflow Vulnerability in Tenda TX3 Router by Shenzhen Tenda Technology Co., Ltd.
CVE-2025-8958
Key Information:
Badges
What is CVE-2025-8958?
A stack-based buffer overflow vulnerability has been discovered in the Tenda TX3 router, specifically affecting version 16.03.13.11_multi_TDE01. This vulnerability is found in the /goform/fast_setting_wifi_set functionality, where manipulation of the 'ssid' argument could allow an attacker to execute arbitrary code remotely. Due to the public disclosure of the exploit, users are advised to promptly address this issue to ensure the security of their device.
Affected Version(s)
TX3 16.03.13.11_multi_TDE01
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved