๐Ÿ” CVE Alert

CVE-2026-105778

CRITICAL 9.9

Tenda AC5 Wifi setWifi stack-based overflow

CVSS Score
9.9
EPSS Score
0.0%
EPSS Percentile
0th

A vulnerability has been found in Tenda AC5 02.03.01.111_multi. Affected by this issue is some unknown functionality of the file /goform/setWifi of the component Wifi Handler. Such manipulation of the argument wifiPwd leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

CWE CWE-121 CWE-119
Vendor tenda
Product ac5
Published Oct 6, 2026
Stay Ahead of the Next One

Get instant alerts for tenda ac5

Be the first to know when new critical vulnerabilities affecting tenda ac5 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Tenda / AC5
02.03.01.111_multi

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
vuldb.com: https://vuldb.com/vuln/413811 vuldb.com: https://vuldb.com/vuln/413811/cti vuldb.com: https://vuldb.com/cve/CVE-2026-105778 vuldb.com: https://vuldb.com/submit/992587 github.com: https://github.com/raisecnull/Tenda-AC5v3-BOF/blob/main/blog.md tenda.com.cn: https://www.tenda.com.cn/

Credits

๐Ÿ” raisecnull (VulDB User)