CVE-2026-15692: Tenda BE12 Pro SafeUrlFilter fromSafeUrlFilter stack-based overflow
A weakness has been identified in Tenda BE12 Pro 16.03.66.23. This vulnerability affects the function fromSafeUrlFilter of the file /goform/SafeUrlFilter. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-15692?
The severity of CVE-2026-15692 is rated high with a CVSS score of 8.8.
What type of vulnerability is CVE-2026-15692?
CVE-2026-15692 is a stack-based buffer overflow vulnerability.
How do I fix CVE-2026-15692?
To fix CVE-2026-15692, update the Tenda BE12 Pro firmware to the latest version that addresses this vulnerability.
Can CVE-2026-15692 be exploited remotely?
Yes, CVE-2026-15692 can be exploited remotely by manipulating the argument page.
Which software is affected by CVE-2026-15692?
CVE-2026-15692 affects the Tenda BE12 Pro version 16.03.66.23.