CVE-2025-15215
8.8Tenda · AC10U
A buffer overflow vulnerability in the Tenda AC10U router allows remote attackers to trigger memory corruption via the formSetPPTPUserList function.
Executive summary
A critical buffer overflow vulnerability in Tenda AC10U routers, identified as CVE-2025-15215, poses a significant risk of remote code execution or system instability.
Vulnerability
This vulnerability originates in the formSetPPTPUserList function within the /goform/setPptpUserList handler. By sending a crafted HTTP POST request, a remote attacker with low-level privileges can trigger a buffer overflow, leading to memory corruption.
Business impact
Successful exploitation of this vulnerability could result in complete system compromise, enabling an attacker to gain unauthorized control over the affected network device. Given the CVSS score of 8.8, this represents a high-severity risk that could lead to lateral movement within the local network or the interception of sensitive traffic. Organizations relying on these devices for secure connectivity face potential service disruptions and data exposure.
Remediation
Immediate Action: Since a specific patch is not currently provided, users should restrict administrative access to the router interface and disable unnecessary features like PPTP until the vendor releases a firmware update.
Proactive Monitoring: Monitor network traffic for anomalous HTTP POST requests directed at the /goform/setPptpUserList endpoint.
Compensating Controls: Implement a Web Application Firewall or router access control list to block unauthorized access to the device management interface from untrusted networks.
Exploitation status
Public Exploit Available: Yes, a published proof-of-concept exists, as documented in the referenced technical write-up.
Analyst recommendation
This vulnerability presents a clear and present danger to network infrastructure utilizing the Tenda AC10U. Security teams must prioritize isolating these devices from the public internet and monitoring for any signs of exploitation. Apply vendor-supplied security updates as soon as they become available to permanently remediate the underlying memory corruption flaw.
More Tenda CVEs
Sources
Originally found and disclosed by yhryhryhr_miemie (VulDB User), per the CVE Program record.
- VDB-338600 | Tenda AC10U HTTP POST Request setPptpUserList formSetPPTPUserList buffer overflow Vulnerability database entry
- VDB-338600 | CTI Indicators (IOB, IOC, IOA)
- Submit #725365 | Tenda AC10U AC10U v1.0 Firmware V15.03.06.48、AC10U v1.0 Firmware V15.03.06.49 Buffer Overflow Third-party advisory
- Exploit / PoC
- tenda.com.cn