8.7
/ 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P
Description
A flaw has been found in Tenda F456 1.0.0.5. The affected element is an unknown function of the file /goform/setcfm of the component httpd. This manipulation of the argument funcname/funcpara1 causes buffer overflow. It is possible to initiate the attack remotely. The exploit has been published and may be used.
AI Analysis
Buffer overflow vulnerability in Tenda F456 1.0.0.5 via the httpd component, allowing remote attackers to exploit the flaw in the setcfm function.
Basic Information
ID
CVE-2026-7057
Source
VulDB
Published
Apr 26, 2026 at 18:45
Affected Product
Vendor
Tenda
Product
F456
Version
1.0.0.5
Affected Versions
Tenda F456 1.0.0.5
CWE Classification
AI Assessment
AI Score
8.7 / 10
AI Severity
High
Vendor
Tenda
Product
F456
Version
1.0.0.5