216.73.217.22

CVE-2026-7055

· Published 26/04/2026 22:17 · Modified 27/04/2026 18:57

Labels: CVE-2026-7055 2026-04-26CVE-2026-7055CWE-119[email protected]

Essential information

Published
26/04/2026 22:17
Modified
27/04/2026 18:57
Author
Creator
CVSS
7.4 HIGH (v3) 7.4 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A security vulnerability has been detected in Tenda F456 1.0.0.5. This issue affects the function fromVirtualSer of the file /goform/VirtualSer of the component httpd. The manipulation of the argument menufacturer/Go leads to buffer overflow. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
tenda / f456 cpe:2.3:a:tenda:f456:1.0.0.5:*:*:*:*:*:*:*

References