TopVuln

High-risk vulnerability digests

CVE-2026-7470

  • HIGH

Details

CVSS v3
8.8
CVSS v4
7.4
CVSS v2
9.0
NVD published
2026-04-30 03:16:01
EPSS
<0.1% probability · 23.2th percentile — 2026-05-12
Affected versions
Tenda 4G300 US_4G300V1.0Mt_V1.01.42_CN_TDC01
Summary
This vulnerability exists in the SafeMacFilter function of Tenda 4G300 router firmware. Remote attackers can trigger a stack-based buffer overflow by maliciously manipulating the page argument. Successful exploitation can lead to remote code execution or complete compromise of the affected router. Public exploit code for this vulnerability is already available.
Remediation
Apply the latest official firmware update from Tenda that addresses this buffer overflow flaw. If no official patch is available, restrict access to the /goform/SafeMacFilter endpoint to trusted IP addresses only. Replace the device if it is end-of-life and no mitigation options are available.
Exploit info
This exploit has been publicly disclosed, with references to this issue documented in trusted public vulnerability databases. You may check Exploit-DB or GitHub for potential exploit details.

View on NVD

TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.

Subscribe — free email digest or paid plan

Information is aggregated from multiple authoritative sources for convenience; verify with NVD and vendors before operational decisions.