Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-9712 | A vulnerability classified as problematic was found in Tenda W18E 16.01.0.11. Affected by this vulnerability is the function formSetAccountList of the file /goform/setModules. The manipulation of the argument Password leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. |
Tue, 08 Apr 2025 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda w18e Tenda w18e Firmware |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:h:tenda:w18e:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:w18e_firmware:16.01.0.11:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda
Tenda w18e Tenda w18e Firmware |
Fri, 04 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 04 Apr 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability classified as problematic was found in Tenda W18E 16.01.0.11. Affected by this vulnerability is the function formSetAccountList of the file /goform/setModules. The manipulation of the argument Password leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | Tenda W18E setModules formSetAccountList stack-based overflow | |
| Weaknesses | CWE-119 CWE-121 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-04-04T15:45:15.623Z
Reserved: 2025-04-03T12:57:22.556Z
Link: CVE-2025-3203
Updated: 2025-04-04T15:45:05.711Z
Status : Analyzed
Published: 2025-04-04T03:15:14.207
Modified: 2025-04-08T13:41:35.810
Link: CVE-2025-3203
No data.
OpenCVE Enrichment
No data.
EUVD