High severity8.8NVD Advisory· Published Apr 26, 2026· Updated Apr 29, 2026
CVE-2026-7056
CVE-2026-7056
Description
A vulnerability was detected in Tenda F456 1.0.0.5. Impacted is the function fromSafeUrlFilter of the file /goform/SafeUrlFilter of the component httpd. The manipulation of the argument page results in buffer overflow. The attack may be performed from remote. The exploit is now public and may be used.
Affected products
1- cpe:2.3:o:tenda:f456_firmware:1.0.0.5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- github.com/Litengzheng/vuldb_new/blob/main/F456/vul_127/README.mdnvdExploitThird Party Advisory
- vuldb.com/submit/798458nvdThird Party AdvisoryVDB Entry
- vuldb.com/submit/798462nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/359629nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/359629/ctinvdPermissions RequiredVDB Entry
- www.tenda.com.cnnvdProduct
News mentions
0No linked articles in our index yet.