CVE-2026-3400Disclosure(tenda / ac15)

LOWCVSS 9.8 · CRITICAL

Exploitation observed; activity peaked at 4 mentions and remains active

Immediate actions

  • Prioritize remediation for tenda ac15 systems immediately
  • Assume compromise if assets are exposed
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

A security flaw has been discovered in Tenda AC15 up to 15.13.07.13. Affected by this issue is some unknown functionality of the file /goform/TextEditingConversion. The manipulation of the argument wpapsk_crypto2_4g results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks.

3.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-121CWE-787

Priority

LOW

Exploitation

ACTIVE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • ac15
  • ac15_firmware

Threat summary

  • Active exploitation appears in 1 classified signals
  • 9 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Technical details provided in 6 signals
  • Disclosure: 8 classified signals
  • Peaked 3d ago at 4 mentions (2026-03-02); latest day: 1
  • 9 total mentions across 5 days

Affected systems

Vendors
Products
ac15ac15_firmware

1 version affected across 2 products

Deep dive

Activity timeline9 mentions / 5d
01234Mentions · 2026-03-01: 2Mentions · 2026-03-02: 4Mentions · 2026-03-05: 1Mentions · 2026-03-06: 1Mentions · 2026-03-07: 1Active Exploitation · 2026-03-02: 1Technical Details · 2026-03-02: 3Technical Details · 2026-03-05: 1Technical Details · 2026-03-06: 1Technical Details · 2026-03-07: 103-0103-0203-0503-0603-07
Signal classification2 categories
Disclosure
888.9%
Active Exploitation
111.1%
Referenced assets7 URLs
Classification over time
DateTotalLabels
2026-03-012
Disclosure2
2026-03-024
Active Exploitation1Disclosure3
2026-03-051
Disclosure1
2026-03-061
Disclosure1
2026-03-071
Disclosure1
Full discourse9 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-3400 Tenda AC15 Remote Stack Overflow Vulnerability in Wireless Configuration Interface https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-3400

    Post summary

    A new remote stack overflow vulnerability (CVE-2026-3400) affecting the Tenda AC15 wireless configuration interface has been disclosed, with technical details available on Vulmon.

    0000160
    4.0K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-3400 A security flaw has been discovered in Tenda AC15 up to 15.13.07.13. Affected by this issue is some unknown functionality of the file /goform/TextEditingConversion. The… https://www.cve.org/CVERecord?id=CVE-2026-3400

    Post summary

    A new CVE-2026-3400 vulnerability was identified in Tenda AC15 routers, affecting an unknown functionality in /goform/TextEditingConversion, with no further details on exploitation or mitigation provided.

    00010611
    56.6K followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-3400 (CVSS:7.4, HIGH) is Analyzed. A security flaw has been discovered in Tenda AC15 up to 15.13.07.13. Affected by this issue is some unknown functionalit..https://nvd.nist.gov/vuln/detail/CVE-2026-3400 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The tweet announces that CVE-2026-3400, a high-penalty flaw in Tenda AC15 firmware, has been identified, providing only basic technical details and no further exploit or mitigation information.

    0000025
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-3400 (CVSS:7.4, HIGH) is Analyzed. A security flaw has been discovered in Tenda AC15 up to 15.13.07.13. Affected by this issue is some unknown functionalit..https://nvd.nist.gov/vuln/detail/CVE-2026-3400 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post announces the discovery of CVE-2026-3400, highlighting its high severity and affected Tenda AC15 firmware range, but provides no PoC, exploit, or patch information.

    0000023
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-3400 (CVSS:7.4, HIGH) is Analyzed. A security flaw has been discovered in Tenda AC15 up to 15.13.07.13. Affected by this issue is some unknown functionalit..https://nvd.nist.gov/vuln/detail/CVE-2026-3400 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The tweet announces CVE‑2026‑3400, a high‑CVSS flaw affecting Tenda AC15 firmware up to version 15.13.07.13, and links to the NVD entry, with no mention of PoC, exploit code, active exploitation, or mitigation.

    0000025
    173 followersView on X
  • VulDB 🛡@vuldb
    Active Exploitation

    Our CTI team identified a lot of activities targeting Tenda AC15 (CVE-2026-3400) https://vuldb.com/?ctiid.348295

    Post summary

    The CTI team reports widespread activity targeting Tenda AC15 via CVE-2026-3400, indicating active exploitation in the wild.

    0000071
    2.1K followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-3400: HIGH] Critical security flaw in Tenda AC15 (up to 15.13.07.13) discovered - stack-based buffer overflow via /goform/TextEditingConversion. Attack can be remote - exploit available.#cve,CVE-2026-3400,#cybersecurity https://cvefind.com/CVE-2026-3400

    Post summary

    A critical stack-based buffer overflow vulnerability (CVE-2026-3400) in Tenda AC15 routers allows remote exploitation; no patch or PoC details are provided.

    0000083
    590 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-3400 A security flaw has been discovered in Tenda AC15 up to 15.13.07.13. Affected by this issue is some unknown functionality of the file /goform/TextEditingConversion. The… https://www.cve.org/CVERecord?id=CVE-2026-3400 ----- Traducción: CVE-2026-3400 Se … http://infoflow.cloud`

    Post summary

    A new CVE-2026-3400 has been identified in Tenda AC15 routers up to version 15.13.07.13, involving an unknown functionality in the /goform/TextEditingConversion file.

    0000040
    55 followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    We have just added an important vulnerability affecting Tenda AC15 (CVE-2026-3400) https://vuldb.com/?id.348295

    Post summary

    A new vulnerability, CVE-2026-3400, affecting the Tenda AC15 router has been added to a vulnerability database.

    0000081
    2.1K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWtendaac15---
OStendaac15_firmware---

Explore more