Buffer Overflow in Tenda AC23 Router
CVE-2026-0640
8.7HIGH
What is CVE-2026-0640?
A vulnerability has been discovered in the Tenda AC23 Router, specifically in the sscanf function within the /goform/PowerSaveSet file. This weakness allows an attacker to manipulate the 'Time' argument, leading to a buffer overflow condition. The attack can be executed remotely, posing a significant risk as the exploit is publicly accessible. Users of the affected version should take immediate precautions to secure their devices.
Affected Version(s)
AC23 16.03.07.52