216.73.217.22

CVE-2026-7057

· Published 26/04/2026 22:17 · Modified 27/04/2026 18:57

Labels: CVE-2026-7057 2026-04-26CVE-2026-7057CWE-119[email protected]

Essential information

Published
26/04/2026 22:17
Modified
27/04/2026 18:57
Author
Creator
CVSS
7.4 HIGH (v3) 7.4 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A flaw has been found in Tenda F456 1.0.0.5. The affected element is an unknown function of the file /goform/setcfm of the component httpd. This manipulation of the argument funcname/funcpara1 causes buffer overflow. It is possible to initiate the attack remotely. The exploit has been published and may be used.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
tenda / f456 cpe:2.3:a:tenda:f456:1.0.0.5:*:*:*:*:*:*:*

References