Metrics
Affected Vendors & Products
Wed, 16 Jul 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Tenda
Tenda o3 Tenda o3 Firmware |
|
CPEs | cpe:2.3:h:tenda:o3:2.0:*:*:*:*:*:*:* cpe:2.3:o:tenda:o3_firmware:1.0.0.12\(3880\):*:*:*:*:*:*:* |
|
Vendors & Products |
Tenda
Tenda o3 Tenda o3 Firmware |
Wed, 16 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Mon, 14 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Fri, 11 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
Thu, 10 Jul 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 10 Jul 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as critical was found in Tenda O3V2 1.0.0.12(3880). This vulnerability affects the function fromNetToolGet of the file /goform/setPingInfo of the component httpd. The manipulation of the argument domain leads to os command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | |
Title | Tenda O3V2 httpd setPingInfo fromNetToolGet os command injection | |
Weaknesses | CWE-77 CWE-78 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-07-10T20:32:07.344Z
Updated: 2025-07-10T20:47:41.403Z
Reserved: 2025-07-10T07:47:58.414Z
Link: CVE-2025-7414

Updated: 2025-07-10T20:47:33.281Z

Status : Analyzed
Published: 2025-07-10T21:15:30.253
Modified: 2025-07-16T15:00:51.303
Link: CVE-2025-7414

No data.