Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-phr9-fmp4-xpc6

Опубликовано: 27 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.4
CVSS3: 8.8

Описание

A security flaw has been discovered in Tenda F456 1.0.0.5. The impacted element is the function fromSetIpBind of the file /goform/SetIpBind of the component httpd. The manipulation of the argument page results in buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.

A security flaw has been discovered in Tenda F456 1.0.0.5. The impacted element is the function fromSetIpBind of the file /goform/SetIpBind of the component httpd. The manipulation of the argument page results in buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.

EPSS

Процентиль: 45%
0.00619
Низкий

7.4 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 8.8
nvd
3 месяца назад

A security flaw has been discovered in Tenda F456 1.0.0.5. The impacted element is the function fromSetIpBind of the file /goform/SetIpBind of the component httpd. The manipulation of the argument page results in buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.

CVSS3: 8.8
fstec
3 месяца назад

Уязвимость функции fromSetIpBind() (/goform/SetIpBind) веб-сервера httpd микропрограммного обеспечения маршрутизаторов Tenda F456, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

EPSS

Процентиль: 45%
0.00619
Низкий

7.4 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-119