Tenda W20E Stack-Based Buffer Overflow Vulnerability
CVE-2026-90689
8.7HIGH
What is CVE-2026-90689?
A security vulnerability has been identified in the Tenda W20E router's function formDelWebAuthWhiteUser, which allows an attacker to manipulate the argument webAuthWhiteUserIndex. This manipulation can trigger a stack-based buffer overflow, potentially compromising the device. The attack can be executed remotely, emphasizing the need for immediate action to secure affected products.
Affected Version(s)
W20E 15.11.0.61068_1546_841_CN_TDC