Description
A vulnerability was identified in Tenda TX9 up to 22.03.02.10_multi. Affected by this issue is the function sub_4223E0 of the file /goform/setMacFilterCfg. Such manipulation of the argument deviceList leads to buffer overflow. The attack may be launched remotely. The exploit is publicly available and might be used.
Problem types
Product status
Timeline
| 2026-02-06: | Advisory disclosed |
| 2026-02-06: | VulDB entry created |
| 2026-02-06: | VulDB entry last update |
Credits
kdb3169 (VulDB User)
References
vuldb.com/?id.344775 (VDB-344775 | Tenda TX9 setMacFilterCfg sub_4223E0 buffer overflow)
vuldb.com/?ctiid.344775 (VDB-344775 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.747251 (Submit #747251 | Tenda TX9 V22.03.02.10_multi Buffer Overflow)
vuldb.com/?submit.749747 (Submit #749747 | Tenda TX9 V22.03.02.18 Stack-based Buffer Overflow (Duplicate))
github.com/...uls/blob/main/tenda/tx9 pro/setMacFilterCfg.md
github.com/...uls/blob/main/tenda/tx9 pro/setMacFilterCfg.md
www.tenda.com.cn/