An issue was discovered in /goform/WifiWpsStart in Tenda AC6V2.0 V15.03.06.23_multi. The index and mode are controllable. If the conditions are met to sprintf, they will be spliced into tmp. It is worth noting that there is no size check,which leads to a stack overflow vulnerability.
Metrics
Affected Vendors & Products
References
History
Wed, 04 Mar 2026 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda ac6 |
|
| Vendors & Products |
Tenda
Tenda ac6 |
Tue, 03 Mar 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-121 | |
| Metrics |
cvssV3_1
|
Mon, 02 Mar 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue was discovered in /goform/WifiWpsStart in Tenda AC6V2.0 V15.03.06.23_multi. The index and mode are controllable. If the conditions are met to sprintf, they will be spliced into tmp. It is worth noting that there is no size check,which leads to a stack overflow vulnerability. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-03-02T00:00:00.000Z
Updated: 2026-03-03T20:08:21.331Z
Reserved: 2026-01-09T00:00:00.000Z
Link: CVE-2025-70252
Updated: 2026-03-03T20:08:17.284Z
Status : Undergoing Analysis
Published: 2026-03-02T17:16:28.783
Modified: 2026-03-03T20:16:44.803
Link: CVE-2025-70252
No data.