Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.4

Tenda i3 1.0.0.6 (2204) Wi-Fi Configuration Data Exposed to Remote Attack

CVE-2026-3970
Summary

A bug in the Tenda i3 1.0.0.6 (2204) software allows an attacker to potentially access sensitive information about your Wi-Fi network configuration. This could happen if you have this software installed and are not careful. To stay safe, update your software to the latest version.

Original title
A flaw has been found in Tenda i3 1.0.0.6(2204). Affected is the function formwrlSSIDget of the file /goform/wifiSSIDget. Executing a manipulation of the argument index can lead to stack-based buff...
Original description
A flaw has been found in Tenda i3 1.0.0.6(2204). Affected is the function formwrlSSIDget of the file /goform/wifiSSIDget. Executing a manipulation of the argument index can lead to stack-based buffer overflow. The attack may be launched remotely. The exploit has been published and may be used.
nvd CVSS2.0 9.0
nvd CVSS3.1 8.8
nvd CVSS4.0 7.4
Vulnerability type
CWE-119 Buffer Overflow
CWE-121 Stack-based Buffer Overflow
Published: 12 Mar 2026 · Updated: 13 Mar 2026 · First seen: 12 Mar 2026