CVE-2026-5686: Tenda CX12L RouteStatic fromRouteStatic stack-based overflow
A security flaw has been discovered in Tenda CX12L 16.03.53.12. This vulnerability affects the function fromRouteStatic of the file /goform/RouteStatic. The manipulation of the argument page results in stack-based buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-5686?
CVE-2026-5686 has been rated with a high severity level due to its potential for exploitation through stack-based buffer overflow.
How do I fix CVE-2026-5686?
To mitigate CVE-2026-5686, users should update the Tenda CX12L router firmware to the latest version available.
What systems are affected by CVE-2026-5686?
CVE-2026-5686 specifically affects Tenda CX12L routers running firmware version 16.03.53.12.
What is the impact of exploiting CVE-2026-5686?
Successful exploitation of CVE-2026-5686 can allow an attacker to execute arbitrary code on the vulnerable router.
Is there a workaround for CVE-2026-5686?
Currently, the primary recommendation for CVE-2026-5686 is to apply the firmware update, as no official workaround has been documented.