Vulnerability Description
A vulnerability was found in Tenda A15 15.13.07.13. Affected is the function fromSetWirelessRepeat of the file /goform/openNetworkGateway. The manipulation of the argument wpapsk_crypto2_4g results in buffer overflow. The attack can be launched remotely. The exploit has been made public and could be used.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tenda | A15 Firmware | 15.13.07.13 |
| Tenda | A15 | - |
Related Weaknesses (CWE)
References
- https://pan.baidu.com/s/1N5pzWOYFGl7KGuh9yjlDHgNot Applicable
- https://vuldb.com/?ctiid.330913Permissions RequiredVDB Entry
- https://vuldb.com/?id.330913Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.678888Third Party AdvisoryVDB Entry
- https://www.tenda.com.cn/Product
- https://www.yuque.com/ba1ma0-an29k/nnxoap/tzg68iadbmqx6esm?singleDocPermissions Required
FAQ
What is CVE-2025-12619?
CVE-2025-12619 is a vulnerability with a CVSS score of 8.8 (HIGH). A vulnerability was found in Tenda A15 15.13.07.13. Affected is the function fromSetWirelessRepeat of the file /goform/openNetworkGateway. The manipulation of the argument wpapsk_crypto2_4g results in...
How severe is CVE-2025-12619?
CVE-2025-12619 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-12619?
Check the references section above for vendor advisories and patch information. Affected products include: Tenda A15 Firmware, Tenda A15.