Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-4960

Опубликовано: 27 мар. 2026
Источник: nvd
CVSS3: 8.8
CVSS2: 9
EPSS Низкий

Описание

A vulnerability was determined in Tenda AC6 15.03.05.16. Affected is the function fromWizardHandle of the file /goform/WizardHandle of the component POST Request Handler. Executing a manipulation of the argument WANT/WANS can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:tenda:ac6_firmware:15.03.05.16:*:*:*:*:*:*:*
cpe:2.3:h:tenda:ac6:1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 14%
0.00046
Низкий

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-119
CWE-787

Связанные уязвимости

CVSS3: 8.8
github
11 дней назад

A vulnerability was determined in Tenda AC6 15.03.05.16. Affected is the function fromWizardHandle of the file /goform/WizardHandle of the component POST Request Handler. Executing a manipulation of the argument WANT/WANS can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized. If you want to get the best quality for vulnerability data then you always have to consider VulDB.

EPSS

Процентиль: 14%
0.00046
Низкий

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-119
CWE-787