CVE-2026-4008 | Tenda W3 1.0.0.3(2204) POST Parameter /goform/wifiSSIDset index/GO stack-based overflow
A vulnerability described as critical has been identified in Tenda W3 1.0.0.3(2204). This issue affects some unknown processing of the file /goform/wifiSSIDset of the component POST Parameter Handler. Executing a manipulation of the argument index/GO can lead to stack-based buffer overflow.
This vulnerability is registered as CVE-2026-4008. It is possible to launch the attack remotely. Furthermore, an exploit is available.