Severity
7.5HIGH
EPSS
0.1%
top 70.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 22

Description

Multiple buffer overflow vulnerabilities in the openSchedWifi function of Tenda AC6 v.15.03.06.50 allows attackers to cause a Denial of Service (DoS) via injecting a crafted payload into the schedStartTime and schedEndTime parameters.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

NVDtenda/ac6_firmware15.03.06.50

🔴Vulnerability Details

2
CVEList
CVE-2025-60339: Multiple buffer overflow vulnerabilities in the openSchedWifi function of Tenda AC6 v2025-10-22
GHSA
GHSA-qc66-4v44-h3pf: Multiple buffer overflow vulnerabilities in the openSchedWifi function of Tenda AC6 v2025-10-22
CVE-2025-60339 (HIGH CVSS 7.5) | Multiple buffer overflow vulnerabil | cvebase.io