Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 24 Feb 2026 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in Tenda WH450 1.0.0.18. Affected is an unknown function of the file /goform/onSSIDChange of the component HTTP Request Handler. This manipulation of the argument ssid_index causes stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited. | A weakness has been identified in Tenda WH450 1.0.0.18. Affected is an unknown function of the file /goform/onSSIDChange of the component HTTP Request Handler. This manipulation of the argument ssid_index causes stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be used for attacks. |
| CPEs | cpe:2.3:o:tenda:wh450_firmware:*:*:*:*:*:*:*:* |
Wed, 24 Dec 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda wh450 Firmware
|
|
| CPEs | cpe:2.3:h:tenda:wh450:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:wh450_firmware:1.0.0.18:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda wh450 Firmware
|
Fri, 19 Dec 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda wh450 |
|
| Vendors & Products |
Tenda
Tenda wh450 |
Thu, 18 Dec 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 18 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in Tenda WH450 1.0.0.18. Affected is an unknown function of the file /goform/onSSIDChange of the component HTTP Request Handler. This manipulation of the argument ssid_index causes stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited. | |
| Title | Tenda WH450 HTTP Request onSSIDChange stack-based overflow | |
| Weaknesses | CWE-119 CWE-121 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-02-24T05:54:24.802Z
Reserved: 2025-12-18T11:11:59.948Z
Link: CVE-2025-14879
Updated: 2025-12-18T18:44:59.757Z
Status : Modified
Published: 2025-12-18T17:15:46.840
Modified: 2026-02-24T06:16:27.527
Link: CVE-2025-14879
No data.
OpenCVE Enrichment
Updated: 2025-12-19T09:16:14Z