Severity
9.8CRITICAL
EPSS
0.1%
top 68.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 20
Latest updateFeb 21

Description

Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the urls parameter in the function get_parentControl_list_Info.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

NVDtenda/ac8_firmware16.03.34.06

🔴Vulnerability Details

2
GHSA
GHSA-frm2-g564-fqfx: Tenda AC8V4 V162025-02-21
CVEList
CVE-2025-25667: Tenda AC8V4 V162025-02-20

📋Vendor Advisories

1
Microsoft
TensorFlow vulnerable to segfault when opening multiframe gif2023-03-14
CVE-2025-25667 (CRITICAL CVSS 9.8) | Tenda AC8V4 V16.03.34.06 was discov | cvebase.io