CVE-2026-4534: Tenda FH451 WrlExtraSet formWrlExtraSet stack-based overflow
A flaw has been found in Tenda FH451 1.0.0.9. This affects the function formWrlExtraSet of the file /goform/WrlExtraSet. This manipulation of the argument GO causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-4534?
CVE-2026-4534 has been classified as a high severity vulnerability due to its ability to trigger a stack-based buffer overflow remotely.
How do I fix CVE-2026-4534?
To remediate CVE-2026-4534, users should upgrade to the latest firmware version that addresses the stack-based buffer overflow flaw.
Who is affected by CVE-2026-4534?
CVE-2026-4534 specifically affects the Tenda FH451 router running version 1.0.0.9.
What type of attack can exploit CVE-2026-4534?
CVE-2026-4534 can be exploited through a remote attack that manipulates the argument in the formWrlExtraSet function.
What consequences could arise from exploiting CVE-2026-4534?
Exploiting CVE-2026-4534 could lead to arbitrary code execution on the affected device, compromising its security and functionality.