Stack-based buffer overflow in FH451 - CVE-2025-7807
Published: July 22, 2025
FH451
Detailed vulnerability description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in the Go parameter in the fromSafeUrlFilter function. A remote user can trigger stack-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
How to mitigate CVE-2025-7807
Sources
- https://github.com/panda666-888/vuls/blob/main/tenda/fh451/fromSafeUrlFilter_Go.md
- https://github.com/panda666-888/vuls/blob/main/tenda/fh451/fromSafeUrlFilter_page.md
- https://vuldb.com/?ctiid.316883
- https://vuldb.com/?id.316883
- https://vuldb.com/?submit.616350
- https://vuldb.com/?submit.616352
- https://www.tenda.com.cn/