Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 24 Feb 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Tenda WH450 1.0.0.18. This affects an unknown function of the file /goform/PPTPDClient of the component HTTP Request Handler. Performing manipulation of the argument Username results in stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made public and could be used. | A vulnerability was found in Tenda WH450 1.0.0.18. This affects an unknown function of the file /goform/PPTPDClient of the component HTTP Request Handler. Performing a manipulation of the argument Username results in stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made public and could be used. |
| CPEs | cpe:2.3:o:tenda:wh450_firmware:*:*:*:*:*:*:*:* |
Tue, 30 Dec 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda wh450 Firmware
|
|
| CPEs | cpe:2.3:h:tenda:wh450:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:wh450_firmware:1.0.0.18:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda wh450 Firmware
|
Wed, 24 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 24 Dec 2025 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda wh450 |
|
| Vendors & Products |
Tenda
Tenda wh450 |
Tue, 23 Dec 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Tenda WH450 1.0.0.18. This affects an unknown function of the file /goform/PPTPDClient of the component HTTP Request Handler. Performing manipulation of the argument Username results in stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made public and could be used. | |
| Title | Tenda WH450 HTTP Request PPTPDClient stack-based overflow | |
| Weaknesses | CWE-119 CWE-121 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-02-24T06:03:41.313Z
Reserved: 2025-12-23T14:15:26.297Z
Link: CVE-2025-15047
Updated: 2025-12-24T15:12:52.319Z
Status : Modified
Published: 2025-12-23T22:15:51.860
Modified: 2026-02-24T07:16:55.677
Link: CVE-2025-15047
No data.
OpenCVE Enrichment
Updated: 2025-12-24T11:51:42Z