Executive brief
The Tenda G0 router, a networking device used for internet connectivity, contains a security flaw in its web management interface. By sending a specially crafted web request, an attacker can crash the device or cause it to become unstable. This results in a denial of service, disrupting internet access and network operations for all connected users.
Technical details
A stack-based buffer overflow exists in the Tenda G0 router, specifically within the formIPMacBindDel function of the web management interface. The vulnerability is triggered when the 'IPMacBindIndex' HTTP parameter, retrieved via websGetVar, is passed to a strcpy function without proper bounds checking. An unauthenticated remote attacker can exploit this by sending a crafted HTTP request containing an excessively long string in the affected parameter. Successful exploitation leads to a process crash or device instability, resulting in a Denial of Service (DoS). The issue is confirmed in firmware version v15.11.0.5.
Affected products
- Tenda (Shenzhen Tenda Technology Co., Ltd) G0 v15.11.0.5
Timeline
- 2026-03-17: other: CVE request submitted to MITRE
- 2026-06-06: disclosed: Public disclosure of vulnerability details
- 2026-06-09: advisory: NVD published the CVE record