Security Advisory

CVE-2026-3166

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-02-25 06:32:09
Last updated 2026-02-25 21:08:45
Assigner VulDB
CVSS score 8.7
State PUBLISHED

Description

A vulnerability was identified in Tenda F453 1.0.0.3. The affected element is the function fromRouteStatic of the file /goform/RouteStatic of the component httpd. Such manipulation of the argument page leads to buffer overflow. The attack can be launched remotely. The exploit is publicly available and might be used.