PT-2026-28699 · Tenda · Tenda Ac7

·

CVE-2026-4974

·

Publicado

2026-03-27

·

Atualizado

2026-03-28

CVSS v2.0

9.0

Alta

VetorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Tenda AC7 version 15.03.06.44
Description A stack-based buffer overflow can occur in the fromSetSysTime function within the /goform/SetSysTimeCfg file, specifically through manipulation of the Time argument via a POST request. This allows for remote exploitation. The exploit has been published.
Recommendations Update the firmware to address this vulnerability.

Exploit

Correção

Stack Overflow

Memory Corruption

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-4974

Produtos afetados

Tenda Ac7