CVE-2024-25748: Tenda AC9 Firmware

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

A Stack Based Buffer Overflow vulnerability in tenda AC9 AC9 v.3.0 with firmware version v.15.03.06.42_multi allows a remote attacker to execute arbitrary code via the fromSetIpMacBind function.

Affected products

  • Tenda AC9 Firmware: version 5.03.06.42_multi only

Published 2024-02-22. Last modified 2026-06-17.