


Perceptive Security
SOC/SIEM Consultancy

Tenda W6-S 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset endpoint. The function formwrlSSIDset uses sprintf to co…
Published:
30 juli 2026 om 22:00:00
Alert date:
31 juli 2026 om 20:02:34
Source:
nvd.nist.gov
Mobile & IoT, Network Infrastructure
Tenda W6-S firmware version 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset endpoint. The vulnerable function formwrlSSIDset uses the unsafe sprintf function to copy user-controlled HTTP parameters 'GO' and 'index' into a fixed 64-byte stack buffer. No length validation or restriction is applied to the input, allowing an attacker to overflow the stack buffer. This could potentially lead to remote code execution or denial of service on the affected device. The vulnerability affects the Tenda W6-S wireless router product line. A proof-of-concept writeup has been published on GitHub demonstrating the overflow condition. IoT/router vulnerabilities of this class are commonly targeted by botnet campaigns and threat actors seeking persistent network footholds.
Technical details
Mitigation steps:
Affected products:
Tenda W6-S 1.0.0.4(510)
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-67822
https://github.com/Tristerjh/Tenda/blob/main/Tenda_W6-S_GO_overflow.md
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
