PT-2026-35376 · Tenda · F456

Ltzhuster

·

Published

2026-04-27

·

Updated

2026-04-27

·

CVE-2026-7099

CVSS v3.1

8.8

High

AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
A vulnerability was detected in Tenda F456 1.0.0.5. The affected element is the function formQuickIndex of the file /goform/QuickIndex of the component httpd. Performing a manipulation of the argument mit linktype results in buffer overflow. The attack may be initiated remotely. The exploit is now public and may be used.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-7099

Affected Products

F456