Security Advisory

CVE-2025-12622

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-11-03 07:32:13
Last updated 2026-02-24 06:23:57
Assigner VulDB
CVSS score 8.7
State PUBLISHED

Description

A vulnerability was determined in Tenda AC10 16.03.10.13. Affected by this vulnerability is the function formSysRunCmd of the file /goform/SysRunCmd. This manipulation of the argument getui causes buffer overflow. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.