CVE-2025-11356 | Tenda AC23 up to 16.03.07.52 SetStaticRouteCfg sscanf list buffer overflow
A vulnerability was found in Tenda AC23 up to 16.03.07.52 and classified as critical. Affected by this issue is the function sscanf of the file /goform/SetStaticRouteCfg. The manipulation of the argument list results in buffer overflow.
This vulnerability is known as CVE-2025-11356. It is possible to launch the attack remotely. Furthermore, an exploit is available.