VYPR
Unrated severityNVD Advisory· Published Mar 2, 2026· Updated Mar 5, 2026

CVE-2026-24113

CVE-2026-24113

Description

An issue was discovered in Tenda W20E V4.0br_V15.11.0.6. Attackers may exploit the vulnerability by controlling the value of nptr. When this value is passed into the getMibPrefix function and concatenated using sprintf without proper size validation, it could lead to a buffer overflow vulnerability.

Affected products

2
  • Tenda/W20Edescription
  • Tenda/W20Ellm-fuzzy
    Range: = V4.0br_V15.11.0.6

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.