Stack-Based Buffer Overflow in Tenda W20E Router
CVE-2026-90688
7.1HIGH
What is CVE-2026-90688?
A noteworthy vulnerability exists in the Tenda W20E router where improper handling of the formIPMacBindAdd function within the HTTP Handler can lead to a stack-based buffer overflow. By exploiting this vulnerability, remote attackers may manipulate the IPMacBindRule argument, potentially gaining unauthorized access and control over affected devices. It highlights the need for vigilant network security practices and timely patches to address such critical flaws.
Affected Version(s)
W20E 15.11.0.61068_1546_841_CN_TDC