Metrics
Affected Vendors & Products
| Source | ID | Title | 
|---|---|---|
  EUVD | 
                EUVD-2025-30827 | A vulnerability was identified in Tenda AC21 16.03.08.16. The affected element is the function sub_45BB10 of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to buffer overflow. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. | 
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 03 Oct 2025 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Tenda ac21 Firmware
         | 
|
| CPEs | cpe:2.3:h:tenda:ac21:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac21_firmware:*:*:*:*:*:*:*:*  | 
|
| Vendors & Products | 
        
        Tenda ac21 Firmware
         | 
Tue, 23 Sep 2025 20:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Tue, 23 Sep 2025 16:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Tenda
         Tenda ac21  | 
|
| Vendors & Products | 
        
        Tenda
         Tenda ac21  | 
Tue, 23 Sep 2025 04:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability was identified in Tenda AC21 16.03.08.16. The affected element is the function sub_45BB10 of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to buffer overflow. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. | |
| Title | Tenda AC21 WifiExtraSet sub_45BB10 buffer overflow | |
| Weaknesses | CWE-119 CWE-120  | 
|
| References | 
         | 
        
  | 
| Metrics | 
        
        cvssV2_0
         
 
 
 
  | 
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-09-23T19:12:30.355Z
Reserved: 2025-09-22T05:10:13.621Z
Link: CVE-2025-10838
Updated: 2025-09-23T19:12:26.937Z
Status : Analyzed
Published: 2025-09-23T05:15:35.010
Modified: 2025-10-03T15:09:55.663
Link: CVE-2025-10838
No data.
                        OpenCVE Enrichment
                    Updated: 2025-09-23T16:03:29Z
 EUVD