CVE-2025-45343: Tenda w18e Firmware
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
An issue in Tenda W18E v.2.0 v.16.01.0.11 allows an attacker to execute arbitrary code via the editing functionality of the account module in the goform/setmodules route.
Affected products
- Tenda w18e Firmware: version 16.01.0.11(2044) only
Published 2025-05-28. Last modified 2026-07-05.