Description
A vulnerability was identified in Tenda F453 1.0.0.3. Affected by this vulnerability is the function formWrlsafeset of the file /goform/AdvSetWrlsafeset of the component httpd. Such manipulation of the argument mit_ssid_index leads to buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used.
Problem types
Product status
Timeline
| 2026-02-26: | Advisory disclosed |
| 2026-02-26: | VulDB entry created |
| 2026-02-26: | VulDB entry last update |
Credits
LtzHust (VulDB User)
References
vuldb.com/?id.347997 (VDB-347997 | Tenda F453 httpd AdvSetWrlsafeset formWrlsafeset buffer overflow)
vuldb.com/?ctiid.347997 (VDB-347997 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.759606 (Submit #759606 | Tenda F453 v1.0.0.3 Buffer Access Using Size of Source Buffer)
github.com/...ngzheng/vul_db/blob/main/F453/vul_73/README.md
www.tenda.com.cn/