VYPR
Unrated severityNVD Advisory· Published Jan 26, 2026· Updated Feb 23, 2026

Tenda AC23 WifiExtraSet buffer overflow

CVE-2026-1420

Description

A flaw has been found in Tenda AC23 16.03.07.52. This impacts an unknown function of the file /goform/WifiExtraSet. This manipulation of the argument wpapsk_crypto causes buffer overflow. Remote exploitation of the attack is possible. The exploit has been published and may be used.

Affected products

2
  • Tenda/AC23v5
    cpe:2.3:o:tenda:ac23_firmware:*:*:*:*:*:*:*:*
    Range: 16.03.07.52
  • Tenda/AC23llm-create
    Range: = 16.03.07.52

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.