CVE-2026-11504

Severity CVSS v4.0:
HIGH
Type:
CWE-119 Buffer Errors
Publication date:
08/06/2026
Last modified:
08/06/2026

Description

A vulnerability was detected in Tenda CX12L 16.03.53.12. The impacted element is the function setSchedWifi of the file /goform/openSchedWifi of the component Wi-Fi Schedule Configuration Endpoint. Performing a manipulation of the argument schedStartTime/schedEndTime results in stack-based buffer overflow. The attack may be initiated remotely. The exploit is now public and may be used.