Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-0848

A vulnerability was found in Tenda A18 up to 15.13.07.09. It has been rated as critical. This issue affects the function SetCmdlineRun of the file /goform/SetCmdlineRun of the component HTTP POST Request Handler. The manipulation of the argument wpapsk_crypto5g leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 22.2%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 6.8
Products affected by CVE-2025-0848
  • Tenda » A18 » Version: N/A
    cpe:2.3:h:tenda:a18:-
  • Tenda » A18 Firmware » Version: 15.13.07.09
    cpe:2.3:o:tenda:a18_firmware:15.13.07.09


Contact Us

Shodan ® - All rights reserved