GHSA-jwrp-439h-fx3wHighCVSS 8.8
A flaw has been found in Tenda W12 3.0.0.7(4763). This affects the function cgistaKickOff of the...
🔗 CVE IDs covered (1)
📋 Description
A flaw has been found in Tenda W12 3.0.0.7(4763). This affects the function cgistaKickOff of the file /bin/httpd. Executing a manipulation of the argument staMac can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been published and may be used.
🔗 References (8)
- https://nvd.nist.gov/vuln/detail/CVE-2026-10188
- https://vuldb.com/cve/CVE-2026-10188
- https://vuldb.com/submit/820018
- https://vuldb.com/vuln/367469
- https://vuldb.com/vuln/367469/cti
- https://www.tenda.com.cn
- http://cdn2.v50to.cc/Tenda%20W12%20cgistaKickOff%20overflow.zip
- https://github.com/advisories/GHSA-jwrp-439h-fx3w