CVE-2026-36770
Deferred
Deferred - Pending Action
Stack Overflow in Tenda US_W3V1.0BR Router
Publication date: 2026-06-09
Last updated on: 2026-06-09
Assigner: MITRE
Description
Description
Shenzhen Tenda Technology Co., Ltd Tenda US_W3V1.0BR v1.0.0.3 was discovered to contain a stack overflow in the Go parameter of the ask_to_reboot function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| tenda | us_w3v1.0br | 1.0.0.3 |
| tenda | w3 | to 1.0.0.3 (inc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-121 | A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function). |