CVE-2026-3398

Severity CVSS v4.0:
HIGH
Type:
CWE-119 Buffer Errors
Publication date:
01/03/2026
Last modified:
01/03/2026

Description

A vulnerability was determined in Tenda F453 1.0.0.3. Affected is the function fromAdvSetWan of the file /goform/AdvSetWan of the component httpd. Executing a manipulation of the argument wanmode/PPPOEPassword can lead to buffer overflow. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.