NA
CVSSv3

CVE-2025-29357

CVSSv4: NA | CVSSv3: NA | CVSSv2: NA | VMScore: NA | EPSS: 0.00027 | KEV: Not Included
Published: 13/03/2025 Updated: 13/03/2025

Vulnerability Summary

Buffer Overflow Vulnerability in Tenda RX3 Router via PPTP Server Configuration

Tenda RX3 router firmware version US_RX3V1.0br_V16.03.13.11_multi_TDE01 has a buffer overflow vulnerability in the /goform/SetPptpServerCfg endpoint. The vulnerability exists in the startIp and endIp parameters, which can be manipulated to trigger a buffer overflow condition. By sending a specially crafted packet, an attacker can potentially cause a Denial of Service (DoS) on the affected router, disrupting its normal operation and network connectivity.