CVE-2026-85109

A vulnerability was determined in Tenda HG10 300001138. This issue affects the function formLogin of the file /boaform/formLogin of the component Boa Web Server. Executing a manipulation of the argument Username can lead to buffer overflow. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-03 14:17

Updated : 2026-09-03 17:25


NVD link : CVE-2026-85109

Mitre link : CVE-2026-85109

CVE.ORG link : CVE-2026-85109


JSON object : View

Products Affected

No product.

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')