Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.4

Tenda i12 Router Allows Remote Code Execution

CVE-2026-4042
Summary

The Tenda i12 router software has a security weakness that could allow an attacker to execute malicious code remotely. This could potentially allow an attacker to take control of the router. Users should update their router software to the latest version to protect themselves from potential attacks.

Original title
A weakness has been identified in Tenda i12 1.0.0.6(2204). The affected element is the function formWifiMacFilterGet of the file /goform/WifiMacFilterGet. This manipulation of the argument index ca...
Original description
A weakness has been identified in Tenda i12 1.0.0.6(2204). The affected element is the function formWifiMacFilterGet of the file /goform/WifiMacFilterGet. This manipulation of the argument index causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.
nvd CVSS2.0 9.0
nvd CVSS3.1 8.8
nvd CVSS4.0 7.4
Vulnerability type
CWE-119 Buffer Overflow
CWE-121 Stack-based Buffer Overflow
Published: 12 Mar 2026 · Updated: 13 Mar 2026 · First seen: 12 Mar 2026