CVE-2026-3974
A vulnerability was identified in Tenda W3 1.0.0.3(2204). This vulnerability affects the function formexeCommand of the file /goform/exeCommand of the component HTTP Handler. Such manipulation of the argument cmdinput leads to stack-based buffer overflow. The attack may be performed from remote. The exploit is publicly available and might be used.
Vendor
Product
CWE
Yayın Tarihi
2026-03-12 03:15:58
Güncelleme
2026-04-02 20:07:48
Source Identifier
cna@vuldb.com
KEV Date Added
-