Tenda O3V2 Stack-Based Buffer Overflow Vulnerability in HTTPD Component

Vulnerability

A critical stack-based buffer overflow vulnerability has been identified in the Tenda O3V2 router, specifically in the 1.0.0.12(3880) firmware version. The issue arises in the HTTPD component, within the 'fromSysToolTime' function of the '/goform/setSysTimeInfo' file. The vulnerability can be exploited remotely by manipulating the 'Time' argument, leading to potential arbitrary code execution.

Impact

Exploitation of this vulnerability causes a stack-based buffer overflow, which can be leveraged to execute arbitrary code.

Reproduction

The vulnerability can be reproduced by sending a crafted request to the '/goform/setSysTimeInfo' endpoint. The 'Time' argument must be manipulated with an input that exceeds the buffer limit, causing a stack overflow. This can be done remotely, taking advantage of the router's HTTP interface.

Added: Jul 10, 2025, 10:57 PM
Updated: Jul 10, 2025, 10:57 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
6.6
remediation
0.0
relevance
0.2
threat
6.4
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.