CVE-2026-2203: Tenda AC8 Embedded Httpd Service fast_setting_wifi_set buffer overflow
A flaw has been found in Tenda AC8 16.03.33.05. Affected by this vulnerability is an unknown functionality of the file /goform/fastsettingwifiset of the component Embedded Httpd Service. This manipulation of the argument timeZone causes buffer overflow. Remote exploitation of the attack is possible. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2203?
CVE-2026-2203 has been classified with a severity rating indicating a moderate risk due to its potential for buffer overflow exploitation.
How do I fix CVE-2026-2203?
To mitigate CVE-2026-2203, upgrade the Tenda AC8 firmware to a version beyond 16.03.33.05 that addresses this vulnerability.
What components are affected by CVE-2026-2203?
CVE-2026-2203 affects the Embedded Httpd Service within the Tenda AC8 router software.
What type of vulnerability is CVE-2026-2203?
CVE-2026-2203 is classified as a buffer overflow vulnerability, which can lead to potential code execution.
What are the potential impacts of CVE-2026-2203?
Exploitation of CVE-2026-2203 could allow an attacker to execute arbitrary code on the affected Tenda AC8 device.