CVE-2026-36796

Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 was discovered to contain a stack overflow in the picCropName parameter of the formCropAndSetWewifiPic function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.
Configurations

No configuration.

History

23 Jul 2026, 09:10

Type Values Removed Values Added
Summary
  • (es) Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 se descubrió que contenía un desbordamiento de pila en el parámetro picCropName de la función formCropAndSetWewifiPic. Esta vulnerabilidad permite a los atacantes causar una Denegación de Servicio (DoS) mediante una solicitud HTTP manipulada.

10 Jun 2026, 20:16

Type Values Removed Values Added
CWE CWE-120
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

09 Jun 2026, 19:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-09 19:17

Updated : 2026-07-23 09:10


NVD link : CVE-2026-36796

Mitre link : CVE-2026-36796

CVE.ORG link : CVE-2026-36796


JSON object : View

Products Affected

No product.

CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')