A vulnerability was determined in Tenda AC5 15.03.06.47. The affected element is the function decodePwd of the file /goform/WizardHandle of the component POST Request Handler. Executing a manipulation of the argument WANT/WANS can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-03-27 01:16
Updated : 2026-03-30 13:26
NVD link : CVE-2026-4906
Mitre link : CVE-2026-4906
CVE.ORG link : CVE-2026-4906
JSON object : View
Products Affected
No product.
