CVE-2026-9389: Tenda F456 L7Im frmL7ImForm buffer overflow
Published May 24, 2026
·Updated
A security vulnerability has been detected in Tenda F456 1.0.0.5. This affects the function frmL7ImForm of the file /goform/L7Im. The manipulation of the argument page leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used.
Affected Software
1 affected component
Tenda Tenda F456=1.0.0.5
Event History
May 24, 2026
CVE Published
via MITRE·02:45 PM
Data Sourced
via MITRE·02:45 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-9389?
CVE-2026-9389 has a severity rating of 8.8, which is considered high.
2
How do I fix CVE-2026-9389?
To mitigate CVE-2026-9389, update the Tenda F456 firmware to the latest version that addresses this vulnerability.
3
What type of vulnerability is associated with CVE-2026-9389?
CVE-2026-9389 is a buffer overflow vulnerability.
4
Can CVE-2026-9389 be exploited remotely?
Yes, CVE-2026-9389 can be exploited remotely due to the manipulation of arguments.
5
What impact does CVE-2026-9389 have on the Tenda F456?
CVE-2026-9389 can lead to remote code execution due to a buffer overflow vulnerability.