Back to CVE List

CVE-2026-2877

HIGH SEVERITY

CVSS Score & Metrics

Base Score
8.8 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Vulnerability Description

A vulnerability has been found in Tenda A18 15.13.07.13. This affects the function strcpy of the file /goform/WifiExtraSet of the component Httpd Service. The manipulation of the argument wpapsk_crypto5g leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-119
Source
NVD
Vendor
tenda
Product
a18_firmware

External References

Discussion (0)

Add Comment

No comments yet. Be the first!