Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 11 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:h:tenda:cx12l:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:cx12l_firmware:16.03.53.12:*:*:*:*:*:*:* |
Fri, 08 May 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 08 May 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda cx12l
|
|
| Vendors & Products |
Tenda cx12l
|
Fri, 08 May 2026 05:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Tenda CX12L 16.03.53.12. This issue affects the function formSetPPTPServer of the file /goform/SetPptpServerCfg”. The manipulation results in stack-based buffer overflow. The attack can be executed remotely. The exploit has been made public and could be used. | |
| Title | Tenda CX12L SetPptpServerCfg” formSetPPTPServer stack-based overflow | |
| First Time appeared |
Tenda
Tenda cx12l Firmware |
|
| Weaknesses | CWE-119 CWE-121 |
|
| CPEs | cpe:2.3:o:tenda:cx12l_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Tenda
Tenda cx12l Firmware |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-08T10:35:06.800Z
Reserved: 2026-05-07T17:58:06.120Z
Link: CVE-2026-8138
Updated: 2026-05-08T10:35:03.305Z
Status : Analyzed
Published: 2026-05-08T05:16:11.833
Modified: 2026-05-11T13:00:50.460
Link: CVE-2026-8138
No data.
OpenCVE Enrichment
Updated: 2026-05-08T06:45:02Z