Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-2906

A security flaw has been discovered in Tenda HG9 300001138. Affected is an unknown function of the file /boaform/formSamba of the component Samba Configuration Endpoint. The manipulation of the argument sambaCap results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 14.4%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 9.0
Products affected by CVE-2026-2906
  • Tenda » Hg9 » Version: N/A
    cpe:2.3:h:tenda:hg9:-
  • Tenda » Hg9 Firmware » Version: 300001138
    cpe:2.3:o:tenda:hg9_firmware:300001138


Contact Us

Shodan ® - All rights reserved