High severity8.8NVD Advisory· Published Apr 27, 2026· Updated Apr 30, 2026
CVE-2026-7151
CVE-2026-7151
Description
A vulnerability was determined in Tenda HG3 2.0. Impacted is the function formUploadConfig of the file /boaform/formIPv6Routing. This manipulation of the argument destNet causes stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
Affected products
1- cpe:2.3:o:tenda:hg3_firmware:300003070:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- www.notion.so/33e0c75766a88041bd86d3810994a541nvdExploitThird Party Advisory
- vuldb.com/submit/802058nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/359750nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/359750/ctinvdPermissions RequiredVDB Entry
- www.tenda.com.cnnvdProduct
News mentions
0No linked articles in our index yet.