CVE-2026-4551: Tenda F453 Parameters SafeClientFilter fromSafeClientFilter memory corruption
A vulnerability was found in Tenda F453 1.0.0.3. This vulnerability affects the function fromSafeClientFilter of the file /goform/SafeClientFilter of the component Parameters Handler. Performing a manipulation of the argument menufacturer/Go results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been made public and could be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-4551?
CVE-2026-4551 has a high severity due to its potential to lead to arbitrary code execution from memory corruption.
How do I fix CVE-2026-4551?
To fix CVE-2026-4551, update the Tenda F453 firmware to the latest version provided by Tenda, specifically addressing this vulnerability.
What components are affected by CVE-2026-4551?
CVE-2026-4551 affects the Parameters Handler in the Tenda F453 router, specifically the fromSafeClientFilter function.
What is the impact of exploiting CVE-2026-4551?
Exploiting CVE-2026-4551 can cause memory corruption, leading to potential arbitrary code execution on the affected device.
How can I determine if my device is vulnerable to CVE-2026-4551?
If your device is running Tenda F453 firmware version 1.0.0.3, it is vulnerable to CVE-2026-4551.