CVE-2026-67822: Buffer Overflow
Tenda W6-S 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset endpoint. The function formwrlSSIDset uses sprintf to copy user-controlled 'GO' and 'index' parameters into a 64-byte stack buffer without length restriction, leading to stack overflow.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Tenda W6-Sto a version that resolves this vulnerability.Fixed in 1.0.0.4(510)
Event History
Frequently Asked Questions
What is the severity of CVE-2026-67822?
CVE-2026-67822 has a severity level of critical with a CVSS score of 9.8.
How do I fix CVE-2026-67822?
Fixing CVE-2026-67822 involves updating the Tenda W6-S firmware to a version that addresses the stack-based buffer overflow vulnerability.
What impact does CVE-2026-67822 have on my device?
CVE-2026-67822 can result in remote code execution due to a stack-based buffer overflow affecting the device's stability and security.
Is CVE-2026-67822 exploitable over the network?
Yes, CVE-2026-67822 can be exploited over the network as it affects the /goform/wifiSSIDset endpoint.
What products are affected by CVE-2026-67822?
CVE-2026-67822 affects the Tenda W6-S model running firmware version 1.0.0.4(510).