cbcvebase.

Tenda F451 vulnerabilities

20 known vulnerabilities affecting tenda/f451.

Total CVEs
20
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH20

Vulnerabilities

Page 1 of 1
CVE-2026-11556P2HIGHCVSS 8.8v1.0.0.7v1.0.0.92026-06-08
CVE-2026-11556 [HIGH] CWE-77 CVE-2026-11556: A security flaw has been discovered in Tenda F451 1.0.0.7/1.0.0.9. Impacted is the function formWrit A security flaw has been discovered in Tenda F451 1.0.0.7/1.0.0.9. Impacted is the function formWriteFacMac of the file /goform/WriteFacMac of the component Web Management Interface. Performing a manipulation of the argument mac results in os command injection. Remote exploitation of the attack is possible. The exploit has been released to the public a
nvd
CVE-2026-6123P2HIGHCVSS 8.8v1.0.0.72026-04-12
CVE-2026-6123 [HIGH] CWE-119 CVE-2026-6123: A vulnerability was found in Tenda F451 1.0.0.7. This affects the function fromAddressNat of the fil A vulnerability was found in Tenda F451 1.0.0.7. This affects the function fromAddressNat of the file /goform/addressNat of the component httpd. Performing a manipulation of the argument entrys results in stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
nvd
CVE-2026-6134P2HIGHCVSS 8.8v1.0.0.7_cn_svn79582026-04-12
CVE-2026-6134 [HIGH] CWE-119 CVE-2026-6134: A security flaw has been discovered in Tenda F451 1.0.0.7_cn_svn7958. This vulnerability affects the A security flaw has been discovered in Tenda F451 1.0.0.7_cn_svn7958. This vulnerability affects the function fromqossetting of the file /goform/qossetting. Performing a manipulation of the argument qos results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been released to the public and may be used f
nvd
CVE-2026-6135P2HIGHCVSS 8.8v1.0.0.7_cn_svn79582026-04-13
CVE-2026-6135 [HIGH] CWE-119 CVE-2026-6135: A weakness has been identified in Tenda F451 1.0.0.7_cn_svn7958. This issue affects the function fro A weakness has been identified in Tenda F451 1.0.0.7_cn_svn7958. This issue affects the function fromSetIpBind of the file /goform/SetIpBind. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.
nvd
CVE-2026-6122P2HIGHCVSS 8.8v1.0.0.72026-04-12
CVE-2026-6122 [HIGH] CWE-119 CVE-2026-6122: A vulnerability has been found in Tenda F451 1.0.0.7. Affected by this issue is the function frmL7Pr A vulnerability has been found in Tenda F451 1.0.0.7. Affected by this issue is the function frmL7ProtForm of the file /goform/L7Prot of the component httpd. Such manipulation of the argument page leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2026-6137P2HIGHCVSS 8.8v1.0.0.7_cn_svn79582026-04-13
CVE-2026-6137 [HIGH] CWE-119 CVE-2026-6137: A vulnerability was detected in Tenda F451 1.0.0.7_cn_svn7958. The affected element is the function A vulnerability was detected in Tenda F451 1.0.0.7_cn_svn7958. The affected element is the function fromAdvSetWan of the file /goform/AdvSetWan. The manipulation of the argument wanmode/PPPOEPassword results in stack-based buffer overflow. It is possible to launch the attack remotely. The exploit is now public and may be used.
nvd
CVE-2026-6121P2HIGHCVSS 8.8v1.0.0.72026-04-12
CVE-2026-6121 [HIGH] CWE-119 CVE-2026-6121: A flaw has been found in Tenda F451 1.0.0.7. Affected by this vulnerability is the function Wrlclien A flaw has been found in Tenda F451 1.0.0.7. Affected by this vulnerability is the function WrlclientSet of the file /goform/WrlclientSet of the component httpd. This manipulation of the argument GO causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been published and may be used.
nvd
CVE-2026-5990P2HIGHCVSS 8.8v1.0.0.72026-04-10
CVE-2026-5990 [HIGH] CWE-119 CVE-2026-5990: A vulnerability has been found in Tenda F451 1.0.0.7. Affected by this vulnerability is the function A vulnerability has been found in Tenda F451 1.0.0.7. Affected by this vulnerability is the function fromSafeEmailFilter of the file /goform/SafeEmailFilter. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2026-5988P2HIGHCVSS 8.8v1.0.0.72026-04-09
CVE-2026-5988 [HIGH] CWE-119 CVE-2026-5988: A vulnerability was detected in Tenda F451 1.0.0.7. This impacts the function formWrlsafeset of the A vulnerability was detected in Tenda F451 1.0.0.7. This impacts the function formWrlsafeset of the file /goform/AdvSetWrlsafeset. Performing a manipulation of the argument mit_ssid results in stack-based buffer overflow. The attack can be initiated remotely. The exploit is now public and may be used.
nvd
CVE-2026-6120P2HIGHCVSS 8.8v1.0.0.72026-04-12
CVE-2026-6120 [HIGH] CWE-119 CVE-2026-6120: A vulnerability was detected in Tenda F451 1.0.0.7. Affected is the function fromDhcpListClient of t A vulnerability was detected in Tenda F451 1.0.0.7. Affected is the function fromDhcpListClient of the file /goform/DhcpListClient of the component httpd. The manipulation of the argument page results in stack-based buffer overflow. The attack can be launched remotely. The exploit is now public and may be used.
nvd
CVE-2026-5991P2HIGHCVSS 8.8v1.0.0.72026-04-10
CVE-2026-5991 [HIGH] CWE-119 CVE-2026-5991: A vulnerability was found in Tenda F451 1.0.0.7. Affected by this issue is the function formWrlExtra A vulnerability was found in Tenda F451 1.0.0.7. Affected by this issue is the function formWrlExtraSet of the file /goform/WrlExtraSet. The manipulation of the argument GO results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been made public and could be used.
nvd
CVE-2026-11557P2HIGHCVSS 8.8v1.0.0.7v1.0.0.92026-06-08
CVE-2026-11557 [HIGH] CWE-119 CVE-2026-11557: A weakness has been identified in Tenda F451 1.0.0.7/1.0.0.9. The affected element is the function f A weakness has been identified in Tenda F451 1.0.0.7/1.0.0.9. The affected element is the function fromNatlimit of the file /goform/Natlimit of the component Web Management Interface. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been made available to the pu
nvd
CVE-2026-6124P2HIGHCVSS 8.8v1.0.0.72026-04-12
CVE-2026-6124 [HIGH] CWE-119 CVE-2026-6124: A vulnerability was determined in Tenda F451 1.0.0.7. This vulnerability affects the function fromSa A vulnerability was determined in Tenda F451 1.0.0.7. This vulnerability affects the function fromSafeMacFilter of the file /goform/SafeMacFilter of the component httpd. Executing a manipulation of the argument page/menufacturer can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been publicly disclosed and may
nvd
CVE-2026-6136P2HIGHCVSS 8.8v1.0.0.7_cn_svn79582026-04-13
CVE-2026-6136 [HIGH] CWE-119 CVE-2026-6136: A security vulnerability has been detected in Tenda F451 1.0.0.7_cn_svn7958. Impacted is the functio A security vulnerability has been detected in Tenda F451 1.0.0.7_cn_svn7958. Impacted is the function frmL7ImForm of the file /goform/L7Im. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.
nvd
CVE-2026-6133P2HIGHCVSS 8.8v1.0.0.7_cn_svn79582026-04-12
CVE-2026-6133 [HIGH] CWE-119 CVE-2026-6133: A vulnerability was identified in Tenda F451 1.0.0.7_cn_svn7958. This affects the function fromSafeU A vulnerability was identified in Tenda F451 1.0.0.7_cn_svn7958. This affects the function fromSafeUrlFilter of the file /goform/SafeUrlFilter. Such manipulation of the argument page leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used.
nvd
CVE-2026-5992P2HIGHCVSS 8.8v1.0.0.72026-04-10
CVE-2026-5992 [HIGH] CWE-119 CVE-2026-5992: A vulnerability was determined in Tenda F451 1.0.0.7. This affects the function fromP2pListFilter of A vulnerability was determined in Tenda F451 1.0.0.7. This affects the function fromP2pListFilter of the file /goform/P2pListFilter. This manipulation of the argument page causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
nvd
CVE-2026-5989P2HIGHCVSS 8.8v1.0.0.72026-04-10
CVE-2026-5989 [HIGH] CWE-119 CVE-2026-5989: A flaw has been found in Tenda F451 1.0.0.7. Affected is the function fromRouteStatic of the file /g A flaw has been found in Tenda F451 1.0.0.7. Affected is the function fromRouteStatic of the file /goform/RouteStatic. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack can be launched remotely. The exploit has been published and may be used.
nvd
CVE-2026-6630P2HIGHCVSS 8.8v1.0.0.7_cn_svn79582026-04-20
CVE-2026-6630 [HIGH] CWE-119 CVE-2026-6630: A vulnerability was found in Tenda F451 1.0.0.7_cn_svn7958. This issue affects the function fromGstD A vulnerability was found in Tenda F451 1.0.0.7_cn_svn7958. This issue affects the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer of the component httpd. Performing a manipulation of the argument dips results in buffer overflow. The attack may be initiated remotely. The exploit has been made public and could be used.
nvd
CVE-2026-6631P2HIGHCVSS 8.8v1.0.0.7_cn_svn79582026-04-20
CVE-2026-6631 [HIGH] CWE-119 CVE-2026-6631: A vulnerability was determined in Tenda F451 1.0.0.7_cn_svn7958. Impacted is the function fromwebExc A vulnerability was determined in Tenda F451 1.0.0.7_cn_svn7958. Impacted is the function fromwebExcptypemanFilter of the file /goform/webExcptypemanFilter of the component httpd. Executing a manipulation of the argument page can lead to buffer overflow. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
nvd
CVE-2026-6632P2HIGHCVSS 8.8v1.0.0.7_cn_svn79582026-04-20
CVE-2026-6632 [HIGH] CWE-119 CVE-2026-6632: A vulnerability was identified in Tenda F451 1.0.0.7_cn_svn7958. The affected element is the functio A vulnerability was identified in Tenda F451 1.0.0.7_cn_svn7958. The affected element is the function fromSafeClientFilter of the file /goform/SafeClientFilter of the component httpd. The manipulation of the argument menufacturer/Go leads to buffer overflow. Remote exploitation of the attack is possible. The exploit is publicly available and might be us
nvd
Tenda F451 vulnerabilities | cvebase