CVE-2025-15048 | Tenda WH450 1.0.0.18 HTTP Request /goform/CheckTools ipaddress command injection (EUVD-2025-205022)
A vulnerability was found in Tenda WH450 1.0.0.18 and classified as critical. This impacts an unknown function of the file /goform/CheckTools of the component HTTP Request Handler. Executing manipulation of the argument ipaddress can lead to command injection.
This vulnerability is tracked as CVE-2025-15048. The attack can be launched remotely. Moreover, an exploit is present.