CVE-2026-2139
Severity CVSS v4.0:
HIGH
Type:
CWE-119
Buffer Errors
Publication date:
08/02/2026
Last modified:
08/02/2026
Description
A vulnerability was determined in Tenda TX9 up to 22.03.02.10_multi. Affected by this vulnerability is the function sub_432580 of the file /goform/fast_setting_wifi_set. This manipulation of the argument ssid causes buffer overflow. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.
Impact
Base Score 4.0
7.40
Severity 4.0
HIGH
Base Score 3.x
8.80
Severity 3.x
HIGH
Base Score 2.0
9.00
Severity 2.0
HIGH
References to Advisories, Solutions, and Tools
- https://github.com/MRAdera/IoT-Vuls/blob/main/tenda/tx9%20pro/fast_setting_wifi_set.md
- https://github.com/MRAdera/IoT-Vuls/blob/main/tenda/tx9%20pro/fast_setting_wifi_set.md#poc
- https://vuldb.com/?ctiid_344774=
- https://vuldb.com/?id_344774=
- https://vuldb.com/?submit_747250=
- https://www.tenda.com.cn/



