CVE-2026-51844: Buffer Overflow
Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the /goform/AdvSetMacMtuWan interface via the cloneType parameter.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Disable remote/ WAN access to the router's web management interface (or restrict it to a specific set of trusted IP addresses) to prevent external requests from reaching endpoints such as /goform/AdvSetMacMtuWan.
Tenda AC7 web management interface remote_web_management / WAN access to management = disabled - Compensating control
At the network perimeter or WAF, block or strictly filter requests to the /goform/AdvSetMacMtuWan endpoint and/or block access to the router management interface from untrusted networks. Apply access control rules to allow management only from trusted management networks or specific IPs.
- Operational
Monitor Tenda vendor advisories for a firmware fix for the AC7 and apply the vendor-supplied firmware update as soon as it is available. Additionally, if compromise is suspected, audit the device, rotate any credentials used on the device, and consider replacing or reimaging the device.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-51844?
CVE-2026-51844 has a risk severity rating of 76, indicating a significant vulnerability.
How does the CVE-2026-51844 vulnerability manifest?
CVE-2026-51844 manifests as a stack buffer overflow vulnerability in the /goform/AdvSetMacMtuWan interface via the cloneType parameter.
Who is affected by CVE-2026-51844?
Users of the Tenda AC7 router running v15.03.06.44 are affected by CVE-2026-51844.
How do I fix CVE-2026-51844?
To fix CVE-2026-51844, update the Tenda AC7 firmware to a version that addresses this vulnerability.
What are the potential consequences of CVE-2026-51844?
Exploitation of CVE-2026-51844 could lead to remote code execution or unauthorized access to the device.