PT-2026-35375 · Tenda · F456

Ltzhust

·

Published

2026-04-27

·

Updated

2026-04-27

·

CVE-2026-7098

CVSS v2.0

9.0

High

AV:N/AC:L/Au:S/C:C/I:C/A:C
A security vulnerability has been detected in Tenda F456 1.0.0.5. Impacted is the function fromDhcpListClient of the file /goform/DhcpListClient of the component httpd. Such manipulation of the argument page leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-7098

Affected Products

F456