CVE-2026-4491

A vulnerability has been found in Tenda A18 Pro 02.03.02.28. Impacted is the function fromSetIpMacBind of the file /goform/SetIpMacBind. Such manipulation of the argument list leads to stack-based buffer overflow. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.
Configurations

No configuration.

History

22 Apr 2026, 21:32

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad ha sido encontrada en Tenda A18 Pro 02.03.02.28. Afectada es la función fromSetIpMacBind del archivo /goform/SetIpMacBind. Tal manipulación de la lista de argumentos lleva a desbordamiento de búfer basado en pila. El ataque puede ser ejecutado remotamente. El exploit ha sido divulgado al público y puede ser usado.

20 Mar 2026, 17:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-20 17:17

Updated : 2026-04-22 21:32


NVD link : CVE-2026-4491

Mitre link : CVE-2026-4491

CVE.ORG link : CVE-2026-4491


JSON object : View

Products Affected

No product.

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-121

Stack-based Buffer Overflow