Tenda F451 vulnerabilities

15 known vulnerabilities affecting tenda/f451.

Total CVEs
15
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH15

Vulnerabilities

Page 1 of 1
CVE-2026-6137HIGHCVSS 7.4v1.0.0.7_cn_svn79582026-04-13
CVE-2026-6137 [HIGH] CWE-119 CVE-2026-6137: A vulnerability was detected in Tenda F451 1.0.0.7_cn_svn7958. The affected element is the function A vulnerability was detected in Tenda F451 1.0.0.7_cn_svn7958. The affected element is the function fromAdvSetWan of the file /goform/AdvSetWan. The manipulation of the argument wanmode/PPPOEPassword results in stack-based buffer overflow. It is possible to launch the attack remotely. The exploit is now public and may be used.
cvelistv5nvd
CVE-2026-6135HIGHCVSS 7.4v1.0.0.7_cn_svn79582026-04-13
CVE-2026-6135 [HIGH] CWE-119 CVE-2026-6135: A weakness has been identified in Tenda F451 1.0.0.7_cn_svn7958. This issue affects the function fro A weakness has been identified in Tenda F451 1.0.0.7_cn_svn7958. This issue affects the function fromSetIpBind of the file /goform/SetIpBind. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.
cvelistv5nvd
CVE-2026-6136HIGHCVSS 7.4v1.0.0.7_cn_svn79582026-04-13
CVE-2026-6136 [HIGH] CWE-119 CVE-2026-6136: A security vulnerability has been detected in Tenda F451 1.0.0.7_cn_svn7958. Impacted is the functio A security vulnerability has been detected in Tenda F451 1.0.0.7_cn_svn7958. Impacted is the function frmL7ImForm of the file /goform/L7Im. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.
cvelistv5nvd
CVE-2026-6120HIGHCVSS 7.4v1.0.0.72026-04-12
CVE-2026-6120 [HIGH] CWE-119 CVE-2026-6120: A vulnerability was detected in Tenda F451 1.0.0.7. Affected is the function fromDhcpListClient of t A vulnerability was detected in Tenda F451 1.0.0.7. Affected is the function fromDhcpListClient of the file /goform/DhcpListClient of the component httpd. The manipulation of the argument page results in stack-based buffer overflow. The attack can be launched remotely. The exploit is now public and may be used.
cvelistv5nvd
CVE-2026-6123HIGHCVSS 7.4v1.0.0.72026-04-12
CVE-2026-6123 [HIGH] CWE-119 CVE-2026-6123: A vulnerability was found in Tenda F451 1.0.0.7. This affects the function fromAddressNat of the fil A vulnerability was found in Tenda F451 1.0.0.7. This affects the function fromAddressNat of the file /goform/addressNat of the component httpd. Performing a manipulation of the argument entrys results in stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
cvelistv5nvd
CVE-2026-6124HIGHCVSS 7.4v1.0.0.72026-04-12
CVE-2026-6124 [HIGH] CWE-119 CVE-2026-6124: A vulnerability was determined in Tenda F451 1.0.0.7. This vulnerability affects the function fromSa A vulnerability was determined in Tenda F451 1.0.0.7. This vulnerability affects the function fromSafeMacFilter of the file /goform/SafeMacFilter of the component httpd. Executing a manipulation of the argument page/menufacturer can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been publicly disclosed and may
cvelistv5nvd
CVE-2026-6121HIGHCVSS 7.4v1.0.0.72026-04-12
CVE-2026-6121 [HIGH] CWE-119 CVE-2026-6121: A flaw has been found in Tenda F451 1.0.0.7. Affected by this vulnerability is the function Wrlclien A flaw has been found in Tenda F451 1.0.0.7. Affected by this vulnerability is the function WrlclientSet of the file /goform/WrlclientSet of the component httpd. This manipulation of the argument GO causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been published and may be used.
cvelistv5nvd
CVE-2026-6122HIGHCVSS 7.4v1.0.0.72026-04-12
CVE-2026-6122 [HIGH] CWE-119 CVE-2026-6122: A vulnerability has been found in Tenda F451 1.0.0.7. Affected by this issue is the function frmL7Pr A vulnerability has been found in Tenda F451 1.0.0.7. Affected by this issue is the function frmL7ProtForm of the file /goform/L7Prot of the component httpd. Such manipulation of the argument page leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
cvelistv5nvd
CVE-2026-6134HIGHCVSS 7.4v1.0.0.7_cn_svn79582026-04-12
CVE-2026-6134 [HIGH] CWE-119 CVE-2026-6134: A security flaw has been discovered in Tenda F451 1.0.0.7_cn_svn7958. This vulnerability affects the A security flaw has been discovered in Tenda F451 1.0.0.7_cn_svn7958. This vulnerability affects the function fromqossetting of the file /goform/qossetting. Performing a manipulation of the argument qos results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been released to the public and may be used f
cvelistv5nvd
CVE-2026-6133HIGHCVSS 7.4v1.0.0.7_cn_svn79582026-04-12
CVE-2026-6133 [HIGH] CWE-119 CVE-2026-6133: A vulnerability was identified in Tenda F451 1.0.0.7_cn_svn7958. This affects the function fromSafeU A vulnerability was identified in Tenda F451 1.0.0.7_cn_svn7958. This affects the function fromSafeUrlFilter of the file /goform/SafeUrlFilter. Such manipulation of the argument page leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used.
cvelistv5nvd
CVE-2026-5992HIGHCVSS 7.4v1.0.0.72026-04-10
CVE-2026-5992 [HIGH] CWE-119 CVE-2026-5992: A vulnerability was determined in Tenda F451 1.0.0.7. This affects the function fromP2pListFilter of A vulnerability was determined in Tenda F451 1.0.0.7. This affects the function fromP2pListFilter of the file /goform/P2pListFilter. This manipulation of the argument page causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
cvelistv5nvd
CVE-2026-5989HIGHCVSS 7.4v1.0.0.72026-04-10
CVE-2026-5989 [HIGH] CWE-119 CVE-2026-5989: A flaw has been found in Tenda F451 1.0.0.7. Affected is the function fromRouteStatic of the file /g A flaw has been found in Tenda F451 1.0.0.7. Affected is the function fromRouteStatic of the file /goform/RouteStatic. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack can be launched remotely. The exploit has been published and may be used.
cvelistv5nvd
CVE-2026-5991HIGHCVSS 7.4v1.0.0.72026-04-10
CVE-2026-5991 [HIGH] CWE-119 CVE-2026-5991: A vulnerability was found in Tenda F451 1.0.0.7. Affected by this issue is the function formWrlExtra A vulnerability was found in Tenda F451 1.0.0.7. Affected by this issue is the function formWrlExtraSet of the file /goform/WrlExtraSet. The manipulation of the argument GO results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been made public and could be used.
cvelistv5nvd
CVE-2026-5990HIGHCVSS 7.4v1.0.0.72026-04-10
CVE-2026-5990 [HIGH] CWE-119 CVE-2026-5990: A vulnerability has been found in Tenda F451 1.0.0.7. Affected by this vulnerability is the function A vulnerability has been found in Tenda F451 1.0.0.7. Affected by this vulnerability is the function fromSafeEmailFilter of the file /goform/SafeEmailFilter. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
cvelistv5nvd
CVE-2026-5988HIGHCVSS 7.4v1.0.0.72026-04-09
CVE-2026-5988 [HIGH] CWE-119 CVE-2026-5988: A vulnerability was detected in Tenda F451 1.0.0.7. This impacts the function formWrlsafeset of the A vulnerability was detected in Tenda F451 1.0.0.7. This impacts the function formWrlsafeset of the file /goform/AdvSetWrlsafeset. Performing a manipulation of the argument mit_ssid results in stack-based buffer overflow. The attack can be initiated remotely. The exploit is now public and may be used.
cvelistv5nvd