All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-4567
HIGHpublished 2026-03-23 03:16 UTC · 5 months ago · modified 2026-06-17 10:56 UTC
8.9
CVSS / 10
// description
A vulnerability has been found in Tenda A15 15.13.07.13. The impacted element is the function UploadCfg of the file /cgi-bin/UploadCfg. The manipulation of the argument File leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
// weaknesses (CWE)
- CWE-119
- CWE-121