Tenda AX3 firmware v16.03.12.11 contains a stack-based buffer overflow in the formGetIptv function due to improper handling of the stbpvid stack buffer, which may result in memory corruption and remote code execution.
Metrics
Affected Vendors & Products
References
History
Fri, 23 Jan 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda ax3 |
|
| Vendors & Products |
Tenda
Tenda ax3 |
Thu, 22 Jan 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 22 Jan 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-121 | |
| Metrics |
cvssV3_1
|
Thu, 22 Jan 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Tenda AX3 firmware v16.03.12.11 contains a stack-based buffer overflow in the formGetIptv function due to improper handling of the stbpvid stack buffer, which may result in memory corruption and remote code execution. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-01-22T00:00:00.000Z
Updated: 2026-01-22T16:00:37.796Z
Reserved: 2026-01-09T00:00:00.000Z
Link: CVE-2025-69764
Updated: 2026-01-22T16:00:05.980Z
Status : Received
Published: 2026-01-22T16:16:07.660
Modified: 2026-01-22T16:16:07.660
Link: CVE-2025-69764
No data.