CVE-2026-3809: Tenda FH1202 NatSaticSetting fromNatStaticSetting stack-based overflow
A flaw has been found in Tenda FH1202 1.2.0.14(408). The impacted element is the function fromNatStaticSetting of the file /goform/NatSaticSetting. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack may be launched remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3809?
CVE-2026-3809 has been classified as a critical vulnerability due to its potential for exploitation leading to stack-based buffer overflow.
How do I fix CVE-2026-3809?
To mitigate CVE-2026-3809, upgrade to the latest version of Tenda FH1202 firmware that rectifies the stack-based overflow issue.
Who is affected by CVE-2026-3809?
CVE-2026-3809 affects users of the Tenda FH1202 device running firmware version 1.2.0.14(408).
What is the nature of the vulnerability in CVE-2026-3809?
CVE-2026-3809 is a stack-based buffer overflow vulnerability caused by improper handling of input in the fromNatStaticSetting function.
Can CVE-2026-3809 be exploited remotely?
Yes, CVE-2026-3809 can be exploited remotely if an attacker is able to manipulate the argument page.