CVE-2026-3799

Publication date

2026-03-09 03:32:09

Family

VulDB

State

PUBLISHED

Description

A flaw has been found in Tenda i3 1.0.0.6(2204). This impacts the function formSetCfm of the file /goform/setcfm. This manipulation of the argument funcpara1 causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been published and may be used.