Description
A vulnerability was determined in Tenda AC10 16.03.10.13. Affected by this vulnerability is the function formSysRunCmd of the file /goform/SysRunCmd. This manipulation of the argument getui causes buffer overflow. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.
Problem types
Product status
Timeline
| 2025-11-02: | Advisory disclosed |
| 2025-11-02: | VulDB entry created |
| 2025-11-03: | VulDB entry last update |
Credits
1935648903 (VulDB User)
References
vuldb.com/?id.330914 (VDB-330914 | Tenda AC10 SysRunCmd formSysRunCmd buffer overflow)
vuldb.com/?ctiid.330914 (VDB-330914 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.678889 (Submit #678889 | tenda AC10V4.0 V16.03.10.13 buffer overflow)
www.yuque.com/ba1ma0-an29k/nnxoap/rg8eug0zk8ep3zne?singleDoc
pan.baidu.com/s/1Jl1zy5niigg1XYm8ZCh_Lg
www.tenda.com.cn/