


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was determined in Tenda i3 1.0.0.6(2204). Affected by this issue is the function formexeCommand of the file /goform/exeCommand. Executing a maniā¦
Published:
8 maart 2026 om 23:00:00
Alert date:
9 maart 2026 om 06:01:01
Source:
nvd.nist.gov
Network Infrastructure, Mobile & IoT
A stack-based buffer overflow vulnerability was discovered in Tenda i3 router firmware version 1.0.0.6(2204). The vulnerability affects the formexeCommand function in the /goform/exeCommand file, where manipulation of the cmdinput argument can trigger the buffer overflow. The vulnerability can be exploited remotely, making it particularly dangerous for internet-connected devices. Public exploits have been disclosed and are available for use by attackers. This affects network infrastructure devices that are commonly deployed in homes and small offices.
Technical details
Mitigation steps:
Affected products:
Tenda i3
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-3802
https://github.com/Svigo-o/Tenda_vul/tree/main/tenda-i3-formexeCommand-cmdinput-buffer-overflow
https://vuldb.com/?ctiid.349769
https://vuldb.com/?id.349769
https://vuldb.com/?submit.768983
https://www.tenda.com.cn/
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
