Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 08 Jun 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 08 Jun 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Tenda HG7HG9 and HG10 300001138_en_xpon. Affected by this issue is the function asp_voip_OtherSet of the file /boaform/voip_other_set of the component Web Management Interface. Performing a manipulation of the argument funckey_transfer results in stack-based buffer overflow. The attack is possible to be carried out remotely. | |
| Title | Tenda HG7HG9/HG10 Web Management voip_other_set asp_voip_OtherSet stack-based overflow | |
| First Time appeared |
Tenda
Tenda hg10 Tenda hg7hg9 |
|
| Weaknesses | CWE-119 CWE-121 |
|
| CPEs | cpe:2.3:h:tenda:hg10:*:*:*:*:*:*:*:* cpe:2.3:h:tenda:hg7hg9:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda
Tenda hg10 Tenda hg7hg9 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-08T16:22:24.244Z
Reserved: 2026-06-07T13:22:12.336Z
Link: CVE-2026-11498
Updated: 2026-06-08T12:47:44.844Z
Status : Deferred
Published: 2026-06-08T09:16:29.753
Modified: 2026-06-08T14:57:14.757
Link: CVE-2026-11498
No data.
OpenCVE Enrichment
Updated: 2026-06-24T12:15:05Z