CVE-2026-3378

HIGH

Tenda F453 1.0.0.3 - Buffer Overflow

Title source: llm

Description

A flaw has been found in Tenda F453 1.0.0.3. This affects the function fromqossetting of the file /goform/qossetting. Executing a manipulation of the argument qos can lead to buffer overflow. The attack can be launched remotely. The exploit has been published and may be used.

Scores

CVSS v3 8.8
EPSS 0.0008
EPSS Percentile 23.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-119 CWE-120
Status published

Affected Products (1)

tenda/f453_firmware

Timeline

Published Mar 01, 2026
Tracked Since Mar 01, 2026