A vulnerability, which was classified as critical, has been found in Tenda AC9 15.03.02.13. Affected by this issue is the function
fromadvsetlanip
of the file /goform/AdvSetLanip of the component POST Request Handler. The manipulation of the argument lanMask leads to buffer overflow.
This vulnerability is handled as CVE-2025-5839. The attack may be launched remotely. Furthermore, there is an exploit available.