CVE-2026-5567: Tenda M3 Destination setAdvPolicyData buffer overflow
A flaw has been found in Tenda M3 1.0.0.10. This vulnerability affects the function setAdvPolicyData of the file /goform/setAdvPolicyData of the component Destination Handler. Executing a manipulation of the argument policyType can lead to buffer overflow. The attack can be executed remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-5567?
CVE-2026-5567 is classified as a high severity vulnerability due to the potential for a buffer overflow exploit.
How do I fix CVE-2026-5567?
To fix CVE-2026-5567, upgrade Tenda M3 to the latest firmware version that addresses this vulnerability.
What systems are affected by CVE-2026-5567?
CVE-2026-5567 affects the Tenda M3 version 1.0.0.10.
What kind of exploit can occur due to CVE-2026-5567?
Exploit of CVE-2026-5567 can allow an attacker to execute arbitrary code through buffer overflow.
Is CVE-2026-5567 easy to exploit?
Yes, CVE-2026-5567 can be exploited relatively easily if the system is not patched.