CVE-2026-6632: Tenda F451 httpd SafeClientFilter fromSafeClientFilter buffer overflow
A vulnerability was identified in Tenda F451 1.0.0.7cnsvn7958. The affected element is the function fromSafeClientFilter of the file /goform/SafeClientFilter of the component httpd. The manipulation of the argument menufacturer/Go leads to buffer overflow. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-6632?
CVE-2026-6632 is rated as critical due to the potential for remote code execution resulting from a buffer overflow.
How do I fix CVE-2026-6632?
To mitigate CVE-2026-6632, update your Tenda F451 firmware to the latest version released by the vendor.
What systems are affected by CVE-2026-6632?
CVE-2026-6632 affects Tenda F451 version 1.0.0.7_cn_svn7958 specifically.
What type of vulnerability is CVE-2026-6632?
CVE-2026-6632 is identified as a buffer overflow vulnerability within the httpd service of the Tenda F451.
Can CVE-2026-6632 be exploited remotely?
Yes, CVE-2026-6632 can be exploited remotely, allowing attackers to execute arbitrary code on the affected system.