top of page
perceptive_background_267k.jpg

A flaw has been found in Tenda W12 3.0.0.7(4763). This affects the function cgistaKickOff of the file /bin/httpd. Executing a manipulation of the argument staMa…

Published:

30 mei 2026 om 22:00:00

Alert date:

31 mei 2026 om 16:00:53

Source:

nvd.nist.gov

Click to open the original link from this advisory

Mobile & IoT, Network Infrastructure

A critical stack-based buffer overflow vulnerability has been discovered in Tenda W12 router firmware version 3.0.0.7(4763). The flaw exists in the cgistaKickOff function within the /bin/httpd file, where manipulation of the staMac argument can trigger the overflow. This vulnerability can be exploited remotely by attackers. A public exploit has been released and is available for use, significantly increasing the risk to affected devices. The vulnerability allows remote code execution on vulnerable Tenda W12 routers.

Technical details

Mitigation steps:

Affected products:

Tenda W12

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page