Executive brief
Tenda AC1206 is a wireless router used to provide internet connectivity in homes and small offices. A remote attacker can exploit a buffer overflow vulnerability in the web management interface to execute arbitrary code on the router, potentially gaining full control of the network and compromising all connected devices and data.
Technical details
A stack-based buffer overflow vulnerability exists in the httpd web management interface of Tenda AC1206, specifically in the set_wl_guest_iplist function within the /goform/WifiGuestSet endpoint. The vulnerability is triggered by improper validation of the shareSpeed parameter, allowing an attacker to overwrite stack memory and potentially achieve remote code execution. The attack is remotely exploitable without authentication requirements. Exploitation details have been publicly disclosed, and patches may be available from the vendor.
Affected products
- Tenda AC1206 15.03.06.23_multi_TD01
Timeline
- 2026-08-14: disclosed: Publicly disclosed on GitHub