Critical severity9.8NVD Advisory· Published Mar 2, 2026· Updated Jun 17, 2026
CVE-2026-24112
CVE-2026-24112
Description
An issue was discovered in Tenda W20E V4.0br_V15.11.0.6. Attackers may exploit the vulnerability by specifying the value of userInfo. When userInfo is passed into the addWewifiWhiteUser function and processed by sscanf without size validation, it could lead to a buffer overflow vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:tenda:w20e_firmware:15.11.0.6:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- github.com/akuma-QAQ/CVEreport/tree/main/D-link/CVE-2026-24112nvdExploitThird Party Advisory
- www.tenda.com.cn/material/show/2707nvdProduct
News mentions
0No linked articles in our index yet.