CVE-2026-2911

HIGH

Tenda FH451 <1.0.0.9 - Buffer Overflow

Title source: llm

Description

A vulnerability has been found in Tenda FH451 up to 1.0.0.9. This issue affects some unknown processing of the file /goform/GstDhcpSetSer. The manipulation leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Scores

CVSS v3 8.8
EPSS 0.0008
EPSS Percentile 23.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-119 CWE-120
Status published

Affected Products (1)

tenda/fh451_firmware

Timeline

Published Feb 22, 2026
Tracked Since Feb 22, 2026