CVE-2025-25663: Tenda AC8 Firmware
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
A vulnerability was found in Tenda AC8V4 V16.03.34.06. Affected is the function SUB_0046AC38 of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to stack-based buffer overflow.
Affected products
- Tenda AC8 Firmware: version 16.03.34.06 only
Published 2025-02-20. Last modified 2026-06-17.