Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 24 Feb 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:tenda:ac21_firmware:*:*:*:*:*:*:*:* |
Wed, 05 Nov 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda ac21 Firmware
|
|
| CPEs | cpe:2.3:h:tenda:ac21:1.0:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac21_firmware:16.03.08.16:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda ac21 Firmware
|
Mon, 03 Nov 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 03 Nov 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda ac21 |
|
| Vendors & Products |
Tenda
Tenda ac21 |
Mon, 03 Nov 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in Tenda AC21 16.03.08.16. This vulnerability affects the function formSetPPTPServer of the file /goform/SetPptpServerCfg. The manipulation of the argument startIp leads to buffer overflow. Remote exploitation of the attack is possible. The exploit is publicly available and might be used. | |
| Title | Tenda AC21 SetPptpServerCfg formSetPPTPServer buffer overflow | |
| Weaknesses | CWE-119 CWE-120 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-02-24T06:21:50.068Z
Reserved: 2025-11-02T06:28:46.133Z
Link: CVE-2025-12611
Updated: 2025-11-03T14:17:19.891Z
Status : Analyzed
Published: 2025-11-03T03:15:40.760
Modified: 2025-11-05T16:09:23.787
Link: CVE-2025-12611
No data.
OpenCVE Enrichment
Updated: 2025-11-03T10:43:25Z