← Back to CVE search

CVE-2026-8138

Tenda CX12L

Description

A vulnerability was found in Tenda CX12L 16.03.53.12. This issue affects the function formSetPPTPServer of the file /goform/SetPptpServerCfg”. The manipulation results in stack-based buffer overflow. The attack can be executed remotely. The exploit has been made public and could be used.

CVSS 8.8EPSS 0.5680000000000001%Risk 0.92
View source
Published
2026-05-08 05:16:11
Affected versions
<16.03.53.13
Type
Firmware
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H