CVE-2026-6135: Tenda F451 SetIpBind fromSetIpBind stack-based overflow
Published Apr 12, 2026
·Updated
A weakness has been identified in Tenda F451 1.0.0.7cnsvn7958. This issue affects the function fromSetIpBind of the file /goform/SetIpBind. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.
Affected Software
3 affected components
Tenda Tenda F451=1.0.0.7_cn_svn7958
All of the following
Tenda F451 Firmware=1.0.0.7
Tenda F451
Event History
Apr 12, 2026
CVE Published
via MITRE·11:15 PM
Data Sourced
via MITRE·11:15 PM
DescriptionSeverityWeakness
Apr 13, 2026
Data Sourced
via NVD·12:16 AM
DescriptionSeverityWeaknessAffected Software
Apr 15, 58301
Event
via FIRST·05:08 AM
Frequently Asked Questions
1
What is the severity of CVE-2026-6135?
The severity of CVE-2026-6135 is high with a score of 7.4.
2
What systems are affected by CVE-2026-6135?
CVE-2026-6135 affects the Tenda F451 running firmware version 1.0.0.7_cn_svn7958.
3
How do I fix CVE-2026-6135?
To fix CVE-2026-6135, update the Tenda F451 firmware to the latest version provided by the vendor.
4
What type of vulnerability is CVE-2026-6135?
CVE-2026-6135 is a stack-based buffer overflow vulnerability.
5
Can CVE-2026-6135 be exploited remotely?
Yes, CVE-2026-6135 can be exploited remotely through manipulation of the argument page.