Vulnerability Description
Tenda W6_S v1.0.0.4_510 has a Buffer Overflow vulnerability in the set_local_time function, which allows remote attackers to cause web server crash via parameter time passed to the binary through a POST request.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tenda | W6-S Firmware | 1.0.0.4\(510\) |
| Tenda | W6-S | - |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-28221?
CVE-2025-28221 is a vulnerability with a CVSS score of 7.5 (HIGH). Tenda W6_S v1.0.0.4_510 has a Buffer Overflow vulnerability in the set_local_time function, which allows remote attackers to cause web server crash via parameter time passed to the binary through a PO...
How severe is CVE-2025-28221?
CVE-2025-28221 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-28221?
Check the references section above for vendor advisories and patch information. Affected products include: Tenda W6-S Firmware, Tenda W6-S.