CVE-2026-4493Disclosure

LOWCVSS 7.4 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was determined in Tenda A18 Pro 02.03.02.28. The impacted element is the function sub_423B50 of the file /goform/setMacFilterCfg of the component MAC Filtering Configuration Endpoint. Executing a manipulation of the argument deviceList can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-121

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • Peaked 2d ago at 2 mentions (2026-03-20); latest day: 1
  • 4 total mentions across 3 days

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-03-20: 2Mentions · 2026-03-21: 1Mentions · 2026-03-22: 1Technical Details · 2026-03-20: 2Technical Details · 2026-03-22: 103-2003-2103-22
Signal classification2 categories
Disclosure
375.0%
General
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-202
Disclosure2
2026-03-211
General1
2026-03-221
Disclosure1
Full discourse4 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-4493 A vulnerability was determined in Tenda A18 Pro 02.03.02.28. The impacted element is the function sub_423B50 of the file /goform/setMacFilterCfg of the component MAC Fi… https://www.cve.org/CVERecord?id=CVE-2026-4493

    Post summary

    The entry announces CVE-2026-4493 as a vulnerability in Tenda A18 Pro firmware, providing identifying details but no PoC, exploit, or patch information.

    0000083
    56.8K followersView on X
  • RedPacket Security@RedPacketSec
    General

    CVE Alert: CVE-2026-4493 - Tenda - A18 Pro - https://www.redpacketsecurity.com/cve-alert-cve-2026-4493-tenda-a18-pro/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-4493 #tenda #a18-pro

    Post summary

    The tweet merely announces CVE‑2026‑4493 for the Tenda A18 Pro and links to a RedPacketSecurity alert, with no further information on exploitation, remediation, or technical specifics.

    0000071
    3.6K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-4493 - Tenda A18 Pro MAC Filtering Configuration Endpoint setMacFilterCfg sub_423B50 stack-based overflow Intel Report: https://ift.tt/v8PeXYw

    Post summary

    A stack‑based overflow vulnerability (CVE‑2026‑4493) in Tenda A18 Pro’s MAC filtering endpoint has been disclosed with technical details, but no PoC, exploit, patch, or evidence of active exploitation.

    0000042
    334 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-4493: HIGH] Vulnerability in Tenda A18 Pro 02.03.02.28's MAC Filter config endpoint allows remote attackers to perform a stack-based buffer overflow attack. Take preventive measures.#cve,CVE-2026-4493,#cybersecurity https://cvefind.com/CVE-2026-4493

    Post summary

    The tweet announces a high‑severity stack-based buffer overflow vulnerability in the Tenda A18 Pro’s MAC filter endpoint, offering no PoC, exploit, or patch information.

    0000049
    604 followersView on X

Explore more