CYBERHAWK / CVE / CVE-2018-25317

CVE-2018-25317

Tenda W3002R/A302/W309R wireless routers

CRITICAL CVSS 9.8 other

The flaw

Cookie session weakness allows unauthenticated attackers to modify DNS settings.

What to do

Update firmware beyond V5.07.64_en

▸ Scan my repo for CVE-2018-25317

References

First seen 2026-05-01 · Tracked by PickBits CyberHawk · Weekly CVE digest