Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-2138

Опубликовано: 08 фев. 2026
Источник: nvd
CVSS3: 8.8
CVSS2: 9
EPSS Низкий

Описание

A vulnerability was found in Tenda TX9 up to 22.03.02.10_multi. Affected is the function sub_42D03C of the file /goform/SetStaticRouteCfg. The manipulation of the argument list results in buffer overflow. The attack can be launched remotely. The exploit has been made public and could be used.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:tenda:tx9_firmware:*:*:*:*:*:*:*:*
Версия до 22.03.02.10 (включая)
cpe:2.3:h:tenda:tx9:-:*:*:*:*:*:*:*

EPSS

Процентиль: 51%
0.00733
Низкий

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 8.8
github
6 месяцев назад

A vulnerability was found in Tenda TX9 up to 22.03.02.10_multi. Affected is the function sub_42D03C of the file /goform/SetStaticRouteCfg. The manipulation of the argument list results in buffer overflow. The attack can be launched remotely. The exploit has been made public and could be used.

CVSS3: 8.8
fstec
7 месяцев назад

Уязвимость функции sub_42D03C (/goform/SetStaticRouteCfg) микропрограммного обеспечения маршрутизаторов Tenda TX9 Pro, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 51%
0.00733
Низкий

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-119