CVE-2026-6196Disclosure

LOWCVSS 7.4 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was detected in Tenda F456 1.0.0.5. This affects the function fromexeCommand of the file /goform/exeCommand. Performing a manipulation of the argument cmdinput results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit is now public and may be used.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-121

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 3 classified signals
  • Peaked at 2 mentions on most recent observed day (2026-04-14)
  • 3 total mentions across 2 days

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-04-13: 1Mentions · 2026-04-14: 2Technical Details · 2026-04-13: 1Technical Details · 2026-04-14: 104-1304-14
Signal classification1 categories
Disclosure
3100.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-131
Disclosure1
2026-04-142
Disclosure2
Full discourse3 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-6196 A vulnerability was detected in Tenda F456 1.0.0.5. This affects the function fromexeCommand of the file /goform/exeCommand. Performing a manipulation of the argument c… https://www.cve.org/CVERecord?id=CVE-2026-6196

    Post summary

    The text announces the detection of CVE-2026-6196 in Tenda F456, describing a function affected by argument manipulation, but provides no PoC, exploit, patch, or active exploitation details.

    000101.3K
    57.2K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-6196 A vulnerability was detected in Tenda F456 1.0.0.5. This affects the function fromexeCommand of the file /goform/exeCommand. Performing a manipulation of the argument c… https://www.cve.org/CVERecord?id=CVE-2026-6196 ----- Traducción: CVE-2026-6196 Se … http://infoflow.cloud`

    Post summary

    The post announces CVE‑2026‑6196 affecting Tenda F456 firmware, outlining technical details of the vulnerability but providing no PoC, exploit, patch, or evidence of active exploitation.

    0000026
    71 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-6196: HIGH] Cyber security alert: Vulnerability discovered in Tenda F456 1.0.0.5. Stack-based buffer overflow in /goform/exeCommand function allows remote attacks via manipulation of cmdinput argumen...#cve,CVE-2026-6196,#cybersecurity https://cvefind.com/CVE-2026-6196

    Post summary

    A security alert discloses a stack-based buffer overflow in the Tenda F456 firmware that allows remote attacks, providing specific technical details of the vulnerability.

    0000037
    620 followersView on X

Explore more