CVE-2025-12209 | Tenda O3 1.0.0.10(2478) /goform/setDhcpConfig SetValue/GetValue dhcpEn stack-based overflow (EUVD-2025-36067)
A vulnerability labeled as critical has been found in Tenda O3 1.0.0.10(2478). Affected is the function SetValue/GetValue of the file /goform/setDhcpConfig. Executing manipulation of the argument dhcpEn can lead to stack-based buffer overflow.
This vulnerability appears as CVE-2025-12209. The attack may be performed from remote. In addition, an exploit is available.