PT-2026-48209 · Tenda · W15E+1

CVE-2026-36820

·

Published

2026-06-05

·

Updated

2026-07-20

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Tenda W20E version 15.11.0.6 Tenda W15E (affected versions not specified)
Description A buffer overflow exists in the formAddWebAuthWhiteUser() function when processing the webAuthWhiteUserInfo parameter. This allows a remote attacker to cause a Denial of Service (DoS), which is a state where a system becomes unavailable to its intended users, by sending a specially crafted HTTP request.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Buffer Overflow

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-08056
CVE-2026-36820

Affected Products

W15E
W20E