Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-24943 | A vulnerability was identified in Tenda AC15 15.13.07.13. Affected by this vulnerability is the function check_fw_type/split_fireware/check_fw of the component Firmware Update Handler. The manipulation leads to insufficient verification of data authenticity. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 18 Aug 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda ac15 Firmware
|
|
| CPEs | cpe:2.3:h:tenda:ac15:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac15_firmware:15.13.07.13:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda ac15 Firmware
|
Fri, 15 Aug 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda ac15 |
|
| Vendors & Products |
Tenda
Tenda ac15 |
Thu, 14 Aug 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 14 Aug 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in Tenda AC15 15.13.07.13. Affected by this vulnerability is the function check_fw_type/split_fireware/check_fw of the component Firmware Update Handler. The manipulation leads to insufficient verification of data authenticity. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. | |
| Title | Tenda AC15 Firmware Update check_fw data authenticity | |
| Weaknesses | CWE-345 | |
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-08-14T19:53:24.311Z
Reserved: 2025-08-13T16:44:21.227Z
Link: CVE-2025-8979
Updated: 2025-08-14T19:53:09.539Z
Status : Analyzed
Published: 2025-08-14T20:15:37.583
Modified: 2025-08-18T15:03:49.693
Link: CVE-2025-8979
No data.
OpenCVE Enrichment
Updated: 2025-08-15T07:47:42Z
EUVD