CVE-2026-7097
A weakness has been identified in Tenda F456 1.0.0.5. This issue affects the function fromwebExcptypemanFilter of the file /goform/webExcptypemanFilter of the component httpd. This manipulation of the argument page causes buffer overflow. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.
Ver en NVDAnálisis
This is a vulnerability in the firmware of a Tenda F456 consumer router. It is vendor-specific hardware that is not commonly used in professional software development stacks, Linux server environments, or enterprise infrastructure. While the bug is a remote buffer overflow with a public exploit, the impact is limited to a specific consumer-grade device model.
Severidad
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HCWE-119CWE-120EPSS
Afecta
tenda:f456_firmwaretenda:f456Descripción técnica
A weakness has been identified in Tenda F456 1.0.0.5. This issue affects the function fromwebExcptypemanFilter of the file /goform/webExcptypemanFilter of the component httpd. This manipulation of the argument page causes buffer overflow. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.