Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 21 Jul 2026 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda ac10
|
|
| Vendors & Products |
Tenda ac10
|
Mon, 20 Jul 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 20 Jul 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Tenda AC10 16.03.10.09_multi_TDE01. This issue affects the function fromAdvSetLanip of the file /goform/AdvSetLanip of the component httpd/netctrl. The manipulation of the argument GetValue/SetValue results in stack-based buffer overflow. The attack may be performed from remote. The exploit has been made public and could be used. | |
| Title | Tenda AC10 httpd/netctrl AdvSetLanip fromAdvSetLanip stack-based overflow | |
| First Time appeared |
Tenda
Tenda ac10 Firmware |
|
| Weaknesses | CWE-119 CWE-121 |
|
| CPEs | cpe:2.3:o:tenda:ac10_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Tenda
Tenda ac10 Firmware |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-07-20T13:50:32.452Z
Reserved: 2026-07-20T07:14:01.898Z
Link: CVE-2026-16248
Updated: 2026-07-20T13:50:27.273Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-21T00:15:03Z