A vulnerability was found in Tenda AC5 15.03.06.47. It has been classified as critical. Affected is the function
formSetRebootTimer
of the file /goform/SetRebootTimer. The manipulation of the argument rebootTime leads to stack-based buffer overflow.
This vulnerability is traded as CVE-2025-5863. It is possible to launch the attack remotely. Furthermore, there is an exploit available.