Critical severity9.8CISA KEVNVD Advisory· Published May 7, 2021· Updated Jun 17, 2026
CVE-2021-31755
CVE-2021-31755
Description
An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN. A stack buffer overflow vulnerability in /goform/setmac allows attackers to execute arbitrary code on the system via a crafted post request.
Affected products
3- Tenda/AC11description
Patches
Vulnerability mechanics
References
2- github.com/Yu3H0/IoT_CVE/tree/main/Tenda/CVE_3nvdBroken LinkExploitIssue TrackingThird Party Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
1- China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare AttacksThe Hacker News · Jul 23, 2026