top of page
perceptive_background_267k.jpg

A vulnerability was found in Tenda W3 1.0.0.3(2204). Affected by this issue is the function formSetCfm of the file /goform/setcfm of the component HTTP Handler.…

Published:

11 maart 2026 om 23:00:00

Alert date:

12 maart 2026 om 22:25:09

Source:

nvd.nist.gov

Click to open the original link from this advisory

Network Infrastructure, Mobile & IoT

A stack-based buffer overflow vulnerability has been discovered in Tenda W3 router firmware version 1.0.0.3(2204). The vulnerability affects the formSetCfm function in the /goform/setcfm file of the HTTP Handler component. Attackers can exploit this flaw by manipulating the funcpara1 argument, but the attack vector is limited to the local network only. The exploit code has been publicly released, making this vulnerability particularly dangerous for affected devices. Organizations using Tenda W3 routers should prioritize patching or implementing network-level mitigations.

Technical details

Mitigation steps:

Affected products:

Tenda W3

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page