


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was determined in Tenda W12 3.0.0.7(4763). Impacted is the function cgiWifiMacFilterSet of the file /bin/httpd. This manipulation of the argumen…
Published:
30 May 2026 at 22:00:00
Alert date:
31 May 2026 at 17:00:50
Source:
nvd.nist.gov
Network Infrastructure, Mobile & IoT
A stack-based buffer overflow vulnerability was discovered in Tenda W12 router firmware version 3.0.0.7(4763). The vulnerability affects the cgiWifiMacFilterSet function in /bin/httpd file. An attacker can exploit this by manipulating the wifiMacFilterSet.macList.mac argument. The attack can be launched remotely, making it particularly dangerous. The exploit code has been publicly disclosed and is available for use. This represents a critical security flaw in network infrastructure equipment that could allow remote code execution.
Technical details
Mitigation steps:
Affected products:
Tenda W12
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-10191
http://cdn2.v50to.cc/cgiWifiMacFilterSet_overflow.zip
https://vuldb.com/cve/CVE-2026-10191
https://vuldb.com/submit/820023
https://vuldb.com/vuln/367472
https://vuldb.com/vuln/367472/cti
https://www.tenda.com.cn/
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
