PT-2026-27016 · Tenda · Tenda Ac15
942384053
·
Published
2026-03-22
·
Updated
2026-06-02
·
CVE-2026-4567
CVSS v3.1
10
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Tenda A15 version 15.13.07.13
Description
A stack-based buffer overflow exists in the
UploadCfg function of the /cgi-bin/UploadCfg file. The issue is triggered by manipulating the File argument. This allows for remote exploitation. The exploit has been publicly disclosed and may be used to take over the router.Recommendations
Update Tenda A15 version 15.13.07.13 to a newer version that contains a fix for this vulnerability.
Exploit
Fix
RCE
Buffer Overflow
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Tenda Ac15