CVE-2025-57217

Severity
5.3MEDIUM
EPSS
0.1%
top 78.29%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 28

Description

Tenda AC10 v4.0 firmware v16.03.10.09_multi_TDE01 was discovered to contain a stack overflow via the Password parameter in the function R7WebsSecurityHandler.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:LExploitability: 3.9 | Impact: 1.4

Affected Packages1 packages

ā–¶NVDtenda/ac10_firmware16.03.10.09_multi_tde01

šŸ”“Vulnerability Details

2
GHSA
GHSA-8jvm-993q-hxfr: Tenda AC10 v4↗2025-08-28
ā–¶
CVEList
CVE-2025-57217: Tenda AC10 v4↗2025-08-28
ā–¶

šŸ”Detection Rules

1
Suricata
ET WEB_SPECIFIC_APPS Tenda Auth Password Parameter Buffer Overflow Attempt (CVE-2025-57217)↗2025-08-28
ā–¶
CVE-2025-57217 (MEDIUM CVSS 5.3) | Tenda AC10 v4.0 firmware v16.03.10. | cvebase.io