CVE 8.7 HIGH

Tenda F456 httpd setcfm buffer overflow_CVE-2026-7057

8.7 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P

Description

A flaw has been found in Tenda F456 1.0.0.5. The affected element is an unknown function of the file /goform/setcfm of the component httpd. This manipulation of the argument funcname/funcpara1 causes buffer overflow. It is possible to initiate the attack remotely. The exploit has been published and may be used.

AI Analysis

Buffer overflow vulnerability in Tenda F456 1.0.0.5 via the httpd component, allowing remote attackers to exploit the flaw in the setcfm function.

Basic Information

ID CVE-2026-7057
Source VulDB
Published Apr 26, 2026 at 18:45

Affected Product

Vendor Tenda
Product F456
Version 1.0.0.5
Affected Versions Tenda F456 1.0.0.5

CWE Classification

AI Assessment

AI Score 8.7 / 10
AI Severity High
Vendor Tenda
Product F456
Version 1.0.0.5

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.