Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-104610— Tenda HG7/HG9/HG10 Boa Web Server formLoopBack boaGetVar stack-based overflow

Quick assessment

Affected
Tenda HG7
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

在Tenda HG7、HG9和HG10 300001138_en_xpon中发现了一个安全漏洞。该漏洞影响了Boa Web Server组件中/boaform/formLoopBack文件的boaGetVar函数。通过对Ethtype参数的操控,可以导致基于栈的缓冲区溢出。该攻击可以远程执行,并且相关利用代码已公开,可能被攻击者使用。

CVSS 10.0 · Critical EPSS 0.64% · P49

Affected Version Matrix 3

VendorProduct Version RangeStatus
Tenda HG10 300001138_en_xpon affected
Tenda HG7 300001138_en_xpon affected
Tenda HG9 300001138_en_xpon affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-104610

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Tenda HG7/HG9/HG10 Boa Web Server formLoopBack boaGetVar stack-based overflow
Source: CVE Program / CVE List V5
Vulnerability Description
A security vulnerability has been detected in Tenda HG7, HG9 and HG10 300001138_en_xpon. This impacts the function boaGetVar of the file /boaform/formLoopBack of the component Boa Web Server. Such manipulation of the argument Ethtype leads to stack-based buffer overflow. The attack can be executed remotely. The exploit has been disclosed publicly and may be used.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
栈缓冲区溢出
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
Tenda HG7 300001138_en_xpon cpe:2.3:h:tenda:hg7:*:*:*:*:*:*:*:*
Tenda HG9 300001138_en_xpon cpe:2.3:h:tenda:hg9:*:*:*:*:*:*:*:*
Tenda HG10 300001138_en_xpon cpe:2.3:h:tenda:hg10:*:*:*:*:*:*:*:*

II. Public POCs for CVE-2026-104610

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-104610

请登录查看更多情报信息。

Other References for CVE-2026-104610 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2026-104610

No comments yet


Leave a comment