CVE-2026-24113: Buffer Overflow
An issue was discovered in Tenda W20E V4.0brV15.11.0.6. Attackers may exploit the vulnerability by controlling the value of nptr. When this value is passed into the getMibPrefix function and concatenated using sprintf without proper size validation, it could lead to a buffer overflow vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-24113?
CVE-2026-24113 is considered a high severity vulnerability due to its potential to cause a buffer overflow.
How do I fix CVE-2026-24113?
To fix CVE-2026-24113, update the firmware of the Tenda W20E to the latest version provided by the manufacturer.
What devices are affected by CVE-2026-24113?
CVE-2026-24113 affects Tenda W20E devices running firmware version 15.11.0.6.
What type of vulnerability is CVE-2026-24113?
CVE-2026-24113 is classified as a buffer overflow vulnerability.
Can CVE-2026-24113 be exploited remotely?
Yes, CVE-2026-24113 can be exploited remotely if an attacker controls the input to the affected function.