CVE-2026-7029
A weakness has been identified in Tenda F456 1.0.0.5. The impacted element is the function fromaddressNat of the file /goform/addressNat. Executing a manipulation of the argument menufacturer/Go can lead to buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.
View on NVDAnalysis
This vulnerability is limited to the firmware of a specific, low-end consumer router (Tenda F456). It does not affect the software development stack, server infrastructure, or common developer tools used by the MexicoDev community.
Severity
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HCWE-119CWE-120EPSS
Affects
tenda:f456_firmwaretenda:f456Technical description
A weakness has been identified in Tenda F456 1.0.0.5. The impacted element is the function fromaddressNat of the file /goform/addressNat. Executing a manipulation of the argument menufacturer/Go can lead to buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.