CYBER CODE RED

Get real-time updates on Telegram

P4Verified

CVE-2025-15231

CVE-2025-15231. CVSS base score 8.8 (HIGH, Vendor/CNA). EPSS 0.00736 (percentile 0.52869), scored 2026-10-04.

Affected technology

m3 firmware · 1.0.0.13(4903)
tenda

M3 · 1.0.0.13(4903)
Tenda

Component: Not specified by the source
Function: formSetRemoteVlanInfo
File: /goform/setVlanInfo

Attack conditions (VulDB, CVSS 4.0): Network (remote) · Low privileges required · No user interaction required

What an attacker can do

VulDB’s CVSS 4.0 assessment rates confidentiality, integrity and availability impact as high. The description does not specify what an attacker can achieve beyond these rated impacts.

Published

CWE
CWE-119, CWE-121
CCR priority
35.4 /100 (P4)
CVSS
8.8 /10 · CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H · Vendor/CNA
EPSS
0.00736 · percentile 0.52869 · 2026-10-04
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2025-15231.html