CVE-2026-5567Disclosure(tenda / m3)

LOWCVSS 7.4 · HIGH

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw has been found in Tenda M3 1.0.0.10. This vulnerability affects the function setAdvPolicyData of the file /goform/setAdvPolicyData of the component Destination Handler. Executing a manipulation of the argument policyType can lead to buffer overflow. The attack can be executed remotely. The exploit has been published and may be used.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • m3
  • m3_firmware

Threat summary

  • 5 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • General: 2 classified signals
  • Peaked at 4 mentions on most recent observed day (2026-04-05)
  • 5 total mentions across 2 days

Affected systems

Vendors
Products
m3m3_firmware

2 versions affected across 2 products

Deep dive

Activity timeline5 mentions / 2d
01234Mentions · 2026-04-04: 1Mentions · 2026-04-05: 4Technical Details · 2026-04-05: 404-0404-05
Signal classification2 categories
Disclosure
360.0%
General
240.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-04-041
General1
2026-04-054
Disclosure3General1
Full discourse5 posts
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-5567 - Tenda M3 Destination setAdvPolicyData buffer overflow Intel Report: https://ift.tt/eVUytDf

    Post summary

    An alert identifies CVE-2026-5567, a buffer overflow in Tenda M3, but does not provide PoC, exploitation code, patches, or evidence of active use.

    0000040
    281 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-5567: HIGH] Vulnerability discovered in Tenda M3 1.0.0.10! Exploit allows remote execution due to buffer overflow in setAdvPolicyData function. Stay alert for cyber threats.#cve,CVE-2026-5567,#cybersecurity https://cvefind.com/CVE-2026-5567

    Post summary

    A high severity buffer overflow vulnerability (CVE‑2026‑5567) in Tenda M3 firmware is disclosed with technical details, but no PoC, patch, or evidence of active exploitation is provided.

    0000039
    612 followersView on X
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-5567 A flaw has been found in Tenda M3 1.0.0.10. This vulnerability affects the function setAdvPolicyData of the file /goform/setAdvPolicyData of the component Destination H… https://www.cve.org/CVERecord?id=CVE-2026-5567 ----- Traducción: CVE-2026-5567 Se … http://infoflow.cloud`

    Post summary

    The tweet announces CVE-2026-5567, describing a flaw in the Tenda M3 firmware that affects the 'setAdvPolicyData' function. No PoC, exploit, patch, or active exploitation information is provided.

    0000029
    63 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-5567 A flaw has been found in Tenda M3 1.0.0.10. This vulnerability affects the function setAdvPolicyData of the file /goform/setAdvPolicyData of the component Destination H… https://www.cve.org/CVERecord?id=CVE-2026-5567

    Post summary

    The text provides a brief technical summary of CVE‑2026‑5567 in Tenda M3 firmware, but does not include any PoC, exploit, patch, or active exploitation details.

    00000284
    56.8K followersView on X
  • VulDB 🛡@vuldb
    General

    A new vulnerability with increased severity was disclosed for Tenda M3 (CVE-2026-5567) https://vuldb.com/vuln/355337

    Post summary

    The tweet merely announces a newly disclosed CVE (CVE-2026-5567) for a Tenda M3 device, noting an increase in severity but providing no further technical or exploitation details.

    0000088
    2.1K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWtendam3---
OStendam3_firmware1.0.0.10--

Explore more