cbcvebase.

Tenda F456 vulnerabilities

28 known vulnerabilities affecting tenda/f456.

Total CVEs
28
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH28

Vulnerabilities

Page 2 of 2
CVE-2026-7081P2HIGHCVSS 8.8v1.0.0.52026-04-27
CVE-2026-7081 [HIGH] CWE-119 CVE-2026-7081: A vulnerability was detected in Tenda F456 1.0.0.5. Affected is the function fromGstDhcpSetSer of th A vulnerability was detected in Tenda F456 1.0.0.5. Affected is the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer of the component httpd. Performing a manipulation of the argument dips results in buffer overflow. Remote exploitation of the attack is possible. The exploit is now public and may be used.
nvd
CVE-2026-7078P2HIGHCVSS 8.8v1.0.0.52026-04-27
CVE-2026-7078 [HIGH] CWE-119 CVE-2026-7078: A security flaw has been discovered in Tenda F456 1.0.0.5. The impacted element is the function from A security flaw has been discovered in Tenda F456 1.0.0.5. The impacted element is the function fromSetIpBind of the file /goform/SetIpBind of the component httpd. The manipulation of the argument page results in buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.
nvd
CVE-2026-9389P2HIGHCVSS 8.8v1.0.0.52026-05-24
CVE-2026-9389 [HIGH] CWE-119 CVE-2026-9389: A security vulnerability has been detected in Tenda F456 1.0.0.5. This affects the function frmL7ImF A security vulnerability has been detected in Tenda F456 1.0.0.5. This affects the function frmL7ImForm of the file /goform/L7Im. The manipulation of the argument page leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used.
cvelistv5nvd
CVE-2026-7082P2HIGHCVSS 8.8v1.0.0.52026-04-27
CVE-2026-7082 [HIGH] CWE-119 CVE-2026-7082: A flaw has been found in Tenda F456 1.0.0.5. Affected by this vulnerability is the function formWrlE A flaw has been found in Tenda F456 1.0.0.5. Affected by this vulnerability is the function formWrlExtraSet of the file /goform/WrlExtraSet of the component httpd. Executing a manipulation of the argument Go can lead to buffer overflow. The attack can be executed remotely. The exploit has been published and may be used.
nvd
CVE-2026-7100P2HIGHCVSS 8.8v1.0.0.52026-04-27
CVE-2026-7100 [HIGH] CWE-119 CVE-2026-7100: A flaw has been found in Tenda F456 1.0.0.5. The impacted element is the function fromNatlimitof of A flaw has been found in Tenda F456 1.0.0.5. The impacted element is the function fromNatlimitof of the file /goform/Natlimit of the component httpd. Executing a manipulation can lead to buffer overflow. The attack may be launched remotely. The exploit has been published and may be used.
nvd
CVE-2026-7057P2HIGHCVSS 8.8v1.0.0.52026-04-26
CVE-2026-7057 [HIGH] CWE-119 CVE-2026-7057: A flaw has been found in Tenda F456 1.0.0.5. The affected element is an unknown function of the file A flaw has been found in Tenda F456 1.0.0.5. The affected element is an unknown function of the file /goform/setcfm of the component httpd. This manipulation of the argument funcname/funcpara1 causes buffer overflow. It is possible to initiate the attack remotely. The exploit has been published and may be used.
nvd
CVE-2026-7053P2HIGHCVSS 8.8v1.0.0.52026-04-26
CVE-2026-7053 [HIGH] CWE-119 CVE-2026-7053: A security flaw has been discovered in Tenda F456 1.0.0.5. This affects the function frmL7ProtForm o A security flaw has been discovered in Tenda F456 1.0.0.5. This affects the function frmL7ProtForm of the file /goform/L7Prot of the component httpd. Performing a manipulation of the argument page results in buffer overflow. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.
nvd
CVE-2026-7031P2HIGHCVSS 8.8v1.0.0.52026-04-26
CVE-2026-7031 [HIGH] CWE-119 CVE-2026-7031: A vulnerability was detected in Tenda F456 1.0.0.5. This impacts the function fromSafeMacFilter of t A vulnerability was detected in Tenda F456 1.0.0.5. This impacts the function fromSafeMacFilter of the file /goform/SafeMacFilter. The manipulation of the argument page results in buffer overflow. It is possible to launch the attack remotely. The exploit is now public and may be used.
nvd
Tenda F456 vulnerabilities | cvebase