NA
CVSSv3

CVE-2025-29363

CVSSv4: NA | CVSSv3: NA | CVSSv2: NA | VMScore: NA | EPSS: 0.00027 | KEV: Not Included
Published: 13/03/2025 Updated: 13/03/2025

Vulnerability Summary

Buffer Overflow Vulnerability in Tenda RX3 Router via Parental Control Parameters

Tenda RX3 router firmware version US_RX3V1.0br_V16.03.13.11_multi_TDE01 has a buffer overflow vulnerability in the parent control settings page. The vulnerability exists in the /goform/saveParentControlInfo endpoint, specifically through the schedStartTime and schedEndTime parameters. By sending a carefully crafted packet, an attacker can trigger a buffer overflow condition that leads to a Denial of Service (DoS) attack, potentially disrupting the router's normal operation.