CVE-2025-29032Classic Buffer Overflow in AC9 Firmware

Severity
5.9MEDIUMNVD
EPSS
0.1%
top 68.66%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 14
Latest updateJun 17

Description

Tenda AC9 v15.03.05.19(6318) was discovered to contain a buffer overflow via the formWifiWpsOOB function.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:H/A:LExploitability: 1.2 | Impact: 4.7

Affected Packages1 packages

NVDtendacn/ac9_firmware15.03.05.19\(6318\)

🔴Vulnerability Details

2
GHSA
GHSA-5xcr-jr93-3x2g: Tenda AC9 v152025-03-14
CVEList
CVE-2025-29032: Tenda AC9 v152025-03-14

🔍Detection Rules

1
Suricata
ET WEB_SPECIFIC_APPS Tenda WifiWpsOOB index Parameter Buffer Overflow Attempt (CVE-2025-29032)2025-06-17
CVE-2025-29032 — Classic Buffer Overflow | cvebase