Vulnerability Bulletins

CVE-2025-14656

   
Affected software HTTPD
 
A weakness has been identified in Tenda AC20 16.03.08.12. This affects the function httpd of the file /goform/openSchedWifi. Executing manipulation of the argument schedStartTime/schedEndTime can lead to buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be exploited.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2025-14656