📦 O3 Firmware

by Tenda

🔍 What is O3 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-55613

CRITICAL CVSS 9.8 Aug 22, 2025

A buffer overflow vulnerability in Tenda O3V2 routers allows attackers to execute arbitrary code by sending specially crafted requests to the fromSafeSetMacFilter function. This affects all users runn...

CVE-2024-36604

CRITICAL CVSS 9.8 Jun 4, 2024

This vulnerability allows remote attackers to execute arbitrary commands with root privileges on Tenda O3V2 routers via a blind command injection in the stpEn parameter. Attackers can gain complete co...

CVE-2025-7421

HIGH CVSS 8.8 Jul 11, 2025

A critical stack-based buffer overflow vulnerability in Tenda O3V2 routers allows remote attackers to execute arbitrary code by manipulating the 'mac' parameter in the MAC filter modification function...

CVE-2025-7423

HIGH CVSS 8.8 Jul 11, 2025

A critical stack-based buffer overflow vulnerability in Tenda O3V2 routers allows remote attackers to execute arbitrary code by sending specially crafted requests to the httpd component. This affects ...

CVE-2025-7420

HIGH CVSS 8.8 Jul 11, 2025

A critical stack-based buffer overflow vulnerability in Tenda O3V2 routers allows remote attackers to execute arbitrary code by manipulating the extChannel parameter. This affects the router's web int...

CVE-2025-7418

HIGH CVSS 8.8 Jul 10, 2025

A critical stack-based buffer overflow vulnerability in Tenda O3V2 routers allows remote attackers to execute arbitrary code by manipulating the destIP parameter in the fromPingResultGet function. Thi...

CVE-2025-7416

HIGH CVSS 8.8 Jul 10, 2025

A critical stack-based buffer overflow vulnerability exists in Tenda O3V2 routers running firmware version 1.0.0.12(3880). Remote attackers can exploit this by sending specially crafted HTTP requests ...

CVE-2024-7151

HIGH CVSS 8.8 Jul 27, 2024

This critical vulnerability in Tenda O3 routers allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the MAC filter configuration function. Attackers can exploit this...

CVE-2025-7415

MEDIUM CVSS 6.3 Jul 10, 2025

This critical vulnerability in Tenda O3V2 routers allows remote attackers to execute arbitrary commands via command injection in the httpd component. Attackers can exploit this by manipulating the 'de...