CVE-2026-4535Disclosure(tenda / fh451)

LOWCVSS 7.4 · HIGH

Signal is active with 8 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability has been found in Tenda FH451 1.0.0.9. This vulnerability affects the function WrlclientSet of the file /goform/WrlclientSet. Such manipulation of the argument GO leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-121

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • fh451
  • fh451_firmware

Threat summary

  • 9 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 5 classified signals
  • General: 3 classified signals
  • Exploit: 1 classified signal
  • Peaked at 8 mentions on most recent observed day (2026-03-22)
  • 9 total mentions across 2 days

Affected systems

Vendors
Products
fh451fh451_firmware

2 versions affected across 2 products

Deep dive

Activity timeline9 mentions / 2d
02468Mentions · 2026-03-21: 1Mentions · 2026-03-22: 8Technical Details · 2026-03-22: 303-2103-22
Signal classification3 categories
Disclosure
555.6%
General
333.3%
Exploit
111.1%
Referenced assets9 URLs
Classification over time
DateTotalLabels
2026-03-211
Disclosure1
2026-03-228
Disclosure4Exploit1General3
Full discourse9 posts
  • CTIWatch@ctiwatchcloud
    Disclosure

    🔍 Today's Top Vulnerabilities 🔴 CVE-2019-25568 | CVSS 9.8 🟠 CVE-2026-4535 | CVSS 8.8 🟠 CVE-2026-4534 | CVSS 8.8 🔗 http://ctiwatch.cloud/vulnerabilities #CVE #Vulnerability #ThreatIntel

    Post summary

    The tweet announces three top CVEs with their CVSS scores and provides a link to a vulnerabilities page, but offers no PoC, exploit, active exploitation, or patch information.

    0001071
    5.6K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-4535 Tenda FH451 Remote Stack Overflow Vulnerability in WrlclientSet Function https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-4535

    Post summary

    The text merely announces the existence of CVE-2026-4535 as a stack overflow in Tenda FH451's WrlclientSet function, without additional detail or actionable information.

    0001034
    4.0K followersView on X
  • CVEarity@CVEarity
    Disclosure

    ⚡ New CVE Alert: CVE-2026-4535 📊 Severity: 8.8 🚨 Risk Level: High 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-4535 #CVE-2026-4535 #CVE #High  #CyberSecurity #InfoSec https://t.co/2ox4ecyDs0

    Post summary

    The tweet announces CVE‑2026‑4535, noting its severity and risk level but providing no further technical or remedial detail.

    0000018
    111 followersView on X
  • cybersecuritypath@cybrsecpath
    General

    Tenda FH451 Stack Overflow Flaw (CVE-2026-4535) Enables Remote Hacks https://cybersecuritypath.com/tenda-fh451-stack-overflow-flaw-cve-2026-4535-enables-remote-hacks/ https://t.co/KtGihLIuso

    Post summary

    The text announces CVE-2026-4535 for a Tenda FH451 remote hack vulnerability and includes a link, but provides no technical details, PoC, exploit code, patch info, or evidence of active exploitation.

    0000022
    1 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-4535 A vulnerability has been found in Tenda FH451 1.0.0.9. This vulnerability affects the function WrlclientSet of the file /goform/WrlclientSet. Such manipulation of the a… https://www.cve.org/CVERecord?id=CVE-2026-4535

    Post summary

    The post notes that CVE‑2026‑4535 affects the WrlclientSet function in Tenda FH451 1.0.0.9 but provides no evidence of exploitation, PoC, or patching.

    0000057
    56.8K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-4535 - Tenda FH451 WrlclientSet stack-based overflow Intel Report: https://ift.tt/jdimHec

    Post summary

    The alert announces a stack-based buffer overflow vulnerability (CVE-2026-4535) in the Tenda FH451 WrlclientSet, providing an Intel Report link for further details.

    0000018
    291 followersView on X
  • RedPacket Security@RedPacketSec
    Disclosure

    CVE Alert: CVE-2026-4535 - Tenda - FH451 - https://www.redpacketsecurity.com/cve-alert-cve-2026-4535-tenda-fh451/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-4535 #tenda #fh451

    Post summary

    A CVE alert has been posted for Tenda FH451, linking to an advisory but lacking detailed information in the text.

    0000077
    3.6K followersView on X
  • CVEFind.com@CveFindCom
    Exploit

    [CVE-2026-4535: HIGH] Vulnerability alert: Tenda FH451 1.0.0.9 exposed to remote stack-based buffer overflow attack through WrlclientSet function. Exploit disclosed. #cybersecurity#cve,CVE-2026-4535,#cybersecurity https://cvefind.com/CVE-2026-4535

    Post summary

    The post announces that CVE-2026-4535, a remote stack‑based buffer overflow in Tenda FH451, has an exploit disclosed, but no PoC code or patch information is provided.

    0000045
    605 followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    A severe vulnerability was disclosed for Tenda FH451 (CVE-2026-4535) https://vuldb.com/?id.352323

    Post summary

    A severe vulnerability (CVE-2026-4535) was disclosed for Tenda FH451, with a reference to a vulnerability database; the post provides no further technical detail or mitigation information.

    0000062
    2.1K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWtendafh451---
OStendafh451_firmware1.0.0.9--

Explore more