CVE-2025-15177
7.2Tenda · WH450
A stack-based buffer overflow in the Tenda WH450 HTTP request handler allows for remote code execution or denial of service via a crafted page parameter in the /goform/SetIpBind endpoint.
Executive summary
A critical stack-based buffer overflow vulnerability in Tenda WH450 firmware version 1.0.0.18 poses a high risk of remote code execution or system compromise.
Vulnerability
The vulnerability is a stack-based buffer overflow occurring within the /goform/SetIpBind HTTP endpoint. An attacker can trigger this condition by providing an excessively long string to the page parameter, which leads to memory corruption.
Business impact
Successful exploitation of this vulnerability allows an attacker to execute arbitrary code on the affected router or induce a denial of service condition. Given the CVSS score of 7.2, this represents a significant threat to network integrity, potentially allowing unauthorized access to internal traffic and administrative functions. Such compromises can result in full device control, data interception, and lateral movement within the network.
Remediation
Immediate Action: As no patch is currently identified, owners should restrict access to the web management interface to trusted internal networks only and disable remote management features.
Proactive Monitoring: Monitor network traffic for unusual HTTP GET requests directed at the /goform/SetIpBind endpoint, particularly those containing long or malformed strings in the page parameter.
Compensating Controls: Implement firewall rules to block unauthorized external access to the device management interface and utilize an intrusion detection system to flag potential overflow attempts.
Exploitation status
Public Exploit Available: Yes, a published proof-of-concept exists, as documented in the technical write-up provided by the vulnerability researcher.
Analyst recommendation
Due to the availability of a functional proof-of-concept and the potential for remote code execution, this vulnerability poses a serious risk to Tenda WH450 users. Organizations should immediately isolate these devices from public-facing segments and maintain heightened vigilance until an official firmware update is released by the vendor to address the underlying memory corruption issue.
More Tenda CVEs
Sources
Originally found and disclosed by z472421519 (VulDB User), per the CVE Program record.
- VDB-338562 | Tenda WH450 HTTP Request SetIpBind stack-based overflow Vulnerability database entry
- VDB-338562 | CTI Indicators (IOB, IOC, IOA)
- Submit #721216 | Tenda WH450 V1.0.0.18 Stack-based Buffer Overflow Third-party advisory
- Exploit / PoC
- Exploit / PoC
- tenda.com.cn