CVE-2026-3801
HIGHTenda i3 1.0.0.6(2204) - Buffer Overflow
Title source: llmDescription
A vulnerability was found in Tenda i3 1.0.0.6(2204). Affected by this vulnerability is the function formSetAutoPing of the file /goform/setAutoPing. Performing a manipulation of the argument ping1/ping2 results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been made public and could be used.
Scores
CVSS v3
8.8
EPSS
0.0009
EPSS Percentile
25.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-119
CWE-121
Status
published
Affected Products (1)
tenda/i3_firmware
Timeline
Published
Mar 09, 2026
Tracked Since
Mar 09, 2026