Metrics
Affected Vendors & Products
| Source | ID | Title | 
|---|---|---|
  EUVD | 
                EUVD-2025-22406 | A vulnerability has been found in Tenda AC23 16.03.07.52 and classified as critical. Affected by this vulnerability is the function sub_46C940 of the file /goform/setMacFilterCfg of the component httpd. The manipulation of the argument deviceList leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | 
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 01 Aug 2025 20:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Tenda ac23 Firmware
         | 
|
| CPEs | cpe:2.3:h:tenda:ac23:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac23_firmware:16.03.07.52:*:*:*:*:*:*:*  | 
|
| Vendors & Products | 
        
        Tenda ac23 Firmware
         | 
Wed, 23 Jul 2025 17:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Tenda
         Tenda ac23  | 
|
| Vendors & Products | 
        
        Tenda
         Tenda ac23  | 
Wed, 23 Jul 2025 16:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Wed, 23 Jul 2025 02:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability has been found in Tenda AC23 16.03.07.52 and classified as critical. Affected by this vulnerability is the function sub_46C940 of the file /goform/setMacFilterCfg of the component httpd. The manipulation of the argument deviceList leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | Tenda AC23 httpd setMacFilterCfg sub_46C940 stack-based overflow | |
| Weaknesses | CWE-119 CWE-121  | 
|
| References | 
         | |
| Metrics | 
        
        cvssV2_0
         
 
 
 
  | 
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-07-23T15:14:41.589Z
Reserved: 2025-07-22T20:41:12.236Z
Link: CVE-2025-8060
Updated: 2025-07-23T14:26:25.710Z
Status : Analyzed
Published: 2025-07-23T02:15:23.223
Modified: 2025-08-01T20:02:41.270
Link: CVE-2025-8060
No data.
                        OpenCVE Enrichment
                    Updated: 2025-07-23T17:35:56Z
 EUVD