Stack-based buffer overflow in FH451 - CVE-2025-7806
Published: July 22, 2025
FH451
Detailed vulnerability description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in the Go parameter in the fromSafeClientFilter function. A remote user can trigger stack-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
How to mitigate CVE-2025-7806
Sources
- https://github.com/panda666-888/vuls/blob/main/tenda/fh451/fromSafeClientFilter_Go.md
- https://github.com/panda666-888/vuls/blob/main/tenda/fh451/fromSafeClientFilter_page.md
- https://vuldb.com/?ctiid.316882
- https://vuldb.com/?id.316882
- https://vuldb.com/?submit.616348
- https://vuldb.com/?submit.616349
- https://www.tenda.com.cn/