216.73.217.172

CVE-2026-2185

· Published 08/02/2026 21:15 · Modified 09/02/2026 16:08

Labels: CVE-2026-2185 2026-02-08CVE-2026-2185CWE-119[email protected]

Essential information

Published
08/02/2026 21:15
Modified
09/02/2026 16:08
Author
Creator
CVSS
7.4 HIGH (v3) 7.4 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A flaw has been found in Tenda RX3 16.03.13.11. This issue affects the function set_device_name of the file /goform/setBlackRule of the component MAC Filtering Configuration Endpoint. This manipulation of the argument devName/mac causes stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been published and may be used.

NVD status

Status
Undergoing Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
tenda / rx3 cpe:2.3:a:tenda:rx3:16.03.13.11:*:*:*:*:*:*:*

References