Security Advisory

CVE-2026-85109

9.8
CRITICAL

Vulnerability Description

A vulnerability was determined in Tenda HG10 300001138. This issue affects the function formLogin of the file /boaform/formLogin of the component Boa Web Server. Executing a manipulation of the argument Username can lead to buffer overflow. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
Published Date September 3, 2026
Official Source NIST NVD Advisory