HIGH 7.1 NVD
CVE-2026-90688
A vulnerability was identified in Tenda W20E 15.11.0.61068_1546_841_CN_TDC. This issue affects the function formIPMacBindAdd of the component HTTP Handler. Such
A vulnerability was identified in Tenda W20E 15.11.0.61068_1546_841_CN_TDC. This issue affects the function formIPMacBindAdd of the component HTTP Handler. Such manipulation of the argument IPMacBindRule leads to stack-based buffer overflow. It is possible to launch the attack remotely.
References
- https://github.com/Amalll-Sec/router-vulnerability-research/blob/main/advisories/Tenda/W20
- https://vuldb.com/cve/CVE-2026-90688
- https://vuldb.com/submit/914958
- https://vuldb.com/vuln/403221
- https://vuldb.com/vuln/403221/cti
This high severity vulnerability with a CVSS score of 7.1 was published on 2026-09-14 via NVD.
vulnfeed aggregates 10822 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.