


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was detected in Tenda F456 1.0.0.5. Affected is the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer of the component httpd. Perform…
Published:
26 April 2026 at 22:00:00
Alert date:
27 April 2026 at 05:01:07
Source:
nvd.nist.gov
Network Infrastructure, Mobile & IoT
A buffer overflow vulnerability was discovered in Tenda F456 router version 1.0.0.5. The vulnerability affects the fromGstDhcpSetSer function in the /goform/GstDhcpSetSer file of the httpd component. The flaw can be triggered by manipulating the 'dips' argument, leading to a buffer overflow condition. The vulnerability allows for remote exploitation and poses a significant security risk. Public exploits are now available, making this vulnerability particularly dangerous for affected systems.
Technical details
Mitigation steps:
Affected products:
Tenda F456
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-7081
https://github.com/Litengzheng/vuldb_new/blob/main/F456/vul_133/README.md
https://vuldb.com/submit/798464
https://vuldb.com/vuln/359656
https://vuldb.com/vuln/359656/cti
https://www.tenda.com.cn/
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
