Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 30 Apr 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:h:tenda:ac15:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac15_firmware:15.03.05.18:*:*:*:*:*:*:* |
Thu, 09 Apr 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 09 Apr 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda ac15
|
|
| Vendors & Products |
Tenda ac15
|
Thu, 09 Apr 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in Tenda AC15 15.03.05.18. This affects the function websGetVar of the file /goform/SysToolChangePwd. Such manipulation of the argument oldPwd/newPwd/cfmPwd leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used. | |
| Title | Tenda AC15 SysToolChangePwd websGetVar stack-based overflow | |
| First Time appeared |
Tenda
Tenda ac15 Firmware |
|
| Weaknesses | CWE-119 CWE-121 |
|
| CPEs | cpe:2.3:o:tenda:ac15_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Tenda
Tenda ac15 Firmware |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-09T14:54:15.471Z
Reserved: 2026-04-08T16:58:20.984Z
Link: CVE-2026-5830
Updated: 2026-04-09T14:54:12.447Z
Status : Analyzed
Published: 2026-04-09T02:16:17.920
Modified: 2026-04-30T15:20:33.763
Link: CVE-2026-5830
No data.
OpenCVE Enrichment
Updated: 2026-04-09T08:25:18Z