Security Advisory
CVE-2025-44877
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Tenda AC9 V15.03.06.42_multi was found to contain a command injection vulnerability in the formSetSambaConf function via the usbname parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.