CVE-2026-3399Disclosure(tenda / f453)

MEDIUMCVSS 7.4 · HIGH

Exploitation observed; activity peaked at 5 mentions and remains active

Immediate actions

  • Prioritize remediation for tenda f453 systems immediately
  • Assume compromise if assets are exposed
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

A vulnerability was identified in Tenda F453 1.0.0.3. Affected by this vulnerability is the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer of the component httpd. The manipulation of the argument dips leads to buffer overflow. The attack may be initiated remotely. The exploit is publicly available and might be used.

5.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120

Priority

MEDIUM

Exploitation

ACTIVE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • f453
  • f453_firmware

Threat summary

  • Active exploitation appears in 1 classified signals
  • Public PoC is present in monitored signal
  • 9 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • PoC mentioned or linked in 1 signal
  • Technical details provided in 6 signals
  • Disclosure: 5 classified signals
  • General: 2 classified signals
  • Peaked 3d ago at 5 mentions (2026-03-01); latest day: 1
  • 9 total mentions across 4 days

Affected systems

Vendors
Products
f453f453_firmware

2 versions affected across 2 products

Deep dive

Activity timeline9 mentions / 4d
01345Mentions · 2026-03-01: 5Mentions · 2026-03-02: 2Mentions · 2026-03-05: 1Mentions · 2026-03-06: 1PoC Mentioned / Linked · 2026-03-01: 1Active Exploitation · 2026-03-02: 1Technical Details · 2026-03-01: 3Technical Details · 2026-03-02: 1Technical Details · 2026-03-05: 1Technical Details · 2026-03-06: 103-0103-0203-0503-06
Signal classification4 categories
Disclosure
555.6%
General
222.2%
Exploit
111.1%
Active Exploitation
111.1%
Referenced assets9 URLs
Classification over time
DateTotalLabels
2026-03-015
Disclosure3Exploit1General1
2026-03-022
Active Exploitation1Disclosure1
2026-03-051
General1
2026-03-061
Disclosure1
Full discourse9 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-3399 Buffer Overflow in Tenda F453 Routers via Unauthenticated Remote Exploita... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-3399 Vulnerability Notification: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=3

    Post summary

    A buffer overflow vulnerability (CVE-2026-3399) affecting Tenda F453 routers has been disclosed, with details available via the provided link.

    0000184
    4.0K followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-3399 (CVSS:7.4, HIGH) is Analyzed. A vulnerability was identified in Tenda F453 1.0.0.3. Affected by this vulnerability is the function fromGstDhcpSetSer o..https://nvd.nist.gov/vuln/detail/CVE-2026-3399 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post announces CVE‑2026‑3399 with a CVSS of 7.4, highlighting the affected Tenda F453 device, but provides no proof‑of‑concept, exploit code, patch, or evidence of active exploitation.

    0000022
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    General

    CVE-2026-3399 (CVSS:7.4, HIGH) is Analyzed. A vulnerability was identified in Tenda F453 1.0.0.3. Affected by this vulnerability is the function fromGstDhcpSetSer o..https://nvd.nist.gov/vuln/detail/CVE-2026-3399 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The text reports a high‑severity vulnerability (CVSS 7.4) affecting Tenda F453 firmware 1.0.0.3, targeting the fromGstDhcpSetSer function, with no evidence of active exploitation, PoC, or patch details.

    0000024
    173 followersView on X
  • VulDB 🛡@vuldb
    Active Exploitation

    Some increased actor activities are shown targeting Tenda F453 (CVE-2026-3399) https://vuldb.com/?ctiid.348294

    Post summary

    The post reports increased attacker activity targeting Tenda F453 via CVE-2026-3399, implying active exploitation, but offers no technical or mitigation details.

    0000077
    2.1K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-3399 - Tenda F453 httpd GstDhcpSetSer fromGstDhcpSetSer buffer overflow Intel Report: https://ift.tt/Dnw3hTB

    Post summary

    Alert announces CVE-2026-3399, a buffer overflow in Tenda F453 httpd's GstDhcpSetSer function, with an Intel report link provided.

    0000047
    342 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-3399 A vulnerability was identified in Tenda F453 1.0.0.3. Affected by this vulnerability is the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer of the componen… https://www.cve.org/CVERecord?id=CVE-2026-3399 ----- Traducción: CVE-2026-3399 Se … http://infoflow.cloud`

    Post summary

    A new CVE-2026-3399 vulnerability was identified in Tenda F453 firmware, affecting the fromGstDhcpSetSer function; no PoC, exploit, or patch details are provided.

    0000045
    55 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-3399 A vulnerability was identified in Tenda F453 1.0.0.3. Affected by this vulnerability is the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer of the componen… https://www.cve.org/CVERecord?id=CVE-2026-3399

    Post summary

    The text references CVE-2026-3399 affecting Tenda F453 firmware, but provides no further details such as exploitation, patch, or technical specifics.

    00000588
    56.6K followersView on X
  • CVEFind.com@CveFindCom
    Exploit

    [CVE-2026-3399: HIGH] Vulnerability discovered in Tenda F453 1.0.0.3 can lead to remote buffer overflow attacks via manipulation of the 'dips' argument in the httpd component. Be cautious, exploit is public.#cve,CVE-2026-3399,#cybersecurity https://cvefind.com/CVE-2026-3399

    Post summary

    The post announces a high‑severity buffer overflow vulnerability in the Tenda F453 router, noting that a public exploit exists, but provides no patch or evidence of active exploitation.

    0000074
    587 followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    The severity is increased for this new vulnerability affecting Tenda F453 (CVE-2026-3399) https://vuldb.com/?id.348294

    Post summary

    A new vulnerability, CVE-2026-3399, affecting the Tenda F453 router has an increased severity rating, as reported on vuldb.com.

    0000077
    2.1K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWtendaf453---
OStendaf453_firmware1.0.0.3--

Explore more