Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-11386

A vulnerability was found in Tenda AC15 15.03.05.18. The impacted element is an unknown function of the file /goform/SetDDNSCfg of the component POST Parameter Handler. The manipulation of the argument ddnsEn results in stack-based buffer overflow. The attack can be launched remotely. The exploit has been made public and could be used.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 14.1%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 9.0
Products affected by CVE-2025-11386
  • Tenda » Ac15 » Version: N/A
    cpe:2.3:h:tenda:ac15:-
  • Tenda » Ac15 Firmware » Version: 15.03.05.18
    cpe:2.3:o:tenda:ac15_firmware:15.03.05.18


Contact Us

Shodan ® - All rights reserved