Vulnerability Description
A vulnerability has been found in Tenda F456 1.0.0.5. This affects the function fromWrlclientSet of the file /goform/WrlclientSet of the component httpd. The manipulation leads to buffer overflow. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tenda | F456 Firmware | 1.0.0.5 |
| Tenda | F456 | - |
Related Weaknesses (CWE)
References
- https://github.com/Litengzheng/vuldb_new/blob/main/F456/vul_139/README.mdExploitVendor Advisory
- https://vuldb.com/submit/798474Third Party AdvisoryVDB Entry
- https://vuldb.com/vuln/359676Third Party AdvisoryVDB Entry
- https://vuldb.com/vuln/359676/ctiPermissions RequiredVDB Entry
- https://www.tenda.com.cn/Product
FAQ
What is CVE-2026-7101?
CVE-2026-7101 is a vulnerability with a CVSS score of 8.8 (HIGH). A vulnerability has been found in Tenda F456 1.0.0.5. This affects the function fromWrlclientSet of the file /goform/WrlclientSet of the component httpd. The manipulation leads to buffer overflow. Rem...
How severe is CVE-2026-7101?
CVE-2026-7101 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-7101?
Check the references section above for vendor advisories and patch information. Affected products include: Tenda F456 Firmware, Tenda F456.