PT-2026-35347 · Tenda · F456

Ltzhust

·

Published

2026-04-27

·

Updated

2026-04-27

·

CVE-2026-7081

CVSS v2.0

9.0

High

AV:N/AC:L/Au:S/C:C/I:C/A:C
A vulnerability was detected in Tenda F456 1.0.0.5. Affected is the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer of the component httpd. Performing a manipulation of the argument dips results in buffer overflow. Remote exploitation of the attack is possible. The exploit is now public and may be used.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-7081

Affected Products

F456