PT-2026-27016 · Tenda · Tenda Ac15

942384053

·

Published

2026-03-22

·

Updated

2026-06-02

·

CVE-2026-4567

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tenda A15 version 15.13.07.13
Description A stack-based buffer overflow exists in the UploadCfg function of the /cgi-bin/UploadCfg file. The issue is triggered by manipulating the File argument. This allows for remote exploitation. The exploit has been publicly disclosed and may be used to take over the router.
Recommendations Update Tenda A15 version 15.13.07.13 to a newer version that contains a fix for this vulnerability.

Exploit

Fix

RCE

Buffer Overflow

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-03440
CVE-2026-4567

Affected Products

Tenda Ac15