A vulnerability has been found in Tenda AC20 16.03.08.12. This affects the function set_qosMib_list of the file /goform/SetNetControlList of the component SetNetControlList Endpoint. The manipulation of the argument list leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Metrics
Affected Vendors & Products
References
History
Sat, 16 Aug 2025 22:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in Tenda AC20 16.03.08.12. This affects the function set_qosMib_list of the file /goform/SetNetControlList of the component SetNetControlList Endpoint. The manipulation of the argument list leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | Tenda AC20 SetNetControlList Endpoint set_qosMib_list stack-based overflow | |
Weaknesses | CWE-119 CWE-121 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-16T22:32:07.366Z
Updated: 2025-08-16T22:32:07.366Z
Reserved: 2025-08-16T06:06:05.154Z
Link: CVE-2025-9087

No data.

Status : Received
Published: 2025-08-16T23:15:26.257
Modified: 2025-08-16T23:15:26.257
Link: CVE-2025-9087

No data.