Security Advisory

CVE-2025-12209

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-10-27 03:02:10
Last updated 2026-02-24 07:04:34
Assigner VulDB
State PUBLISHED

Description

A vulnerability was determined in Tenda O3 1.0.0.10(2478). Affected is the function SetValue/GetValue of the file /goform/setDhcpConfig. Executing a manipulation of the argument dhcpEn can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.