CVE-2025-4867: Tenda a15 Firmware

Medium severity, CVSS 6.5. EPSS: 0.8% chance of exploitation in the next 30 days.

A vulnerability was found in Tenda A15 15.13.07.13. It has been declared as problematic. Affected by this vulnerability is the function formArpNerworkSet of the file /goform/ArpNerworkSet. The manipulation leads to denial of service. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

Affected products

  • Tenda a15 Firmware: version 15.13.07.13 only

Published 2025-05-18. Last modified 2026-06-17.