CVE-2026-6200Disclosure

LOWCVSS 7.4 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was determined in Tenda F456 1.0.0.5. The affected element is the function formwebtypelibrary of the file /goform/webtypelibrary. This manipulation of the argument menufacturer/Go causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-121

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 2 mentions (2026-04-13); latest day: 2
  • 4 total mentions across 2 days

Deep dive

Activity timeline4 mentions / 2d
01122Mentions · 2026-04-13: 2Mentions · 2026-04-14: 2Technical Details · 2026-04-13: 2Technical Details · 2026-04-14: 204-1304-14
Signal classification1 categories
Disclosure
4100.0%
Referenced assets4 URLs
Full discourse4 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-6200 A vulnerability was determined in Tenda F456 1.0.0.5. The affected element is the function formwebtypelibrary of the file /goform/webtypelibrary. This manipulation of t… https://www.cve.org/CVERecord?id=CVE-2026-6200 ----- Traducción: CVE-2026-6200 Se … http://infoflow.cloud`

    Post summary

    The tweet outlines the discovery of CVE‑2026‑6200 targeting the formwebtypelibrary function in a Tenda F456 device’s /goform/webtypelibrary file, but offers no exploit, patch, or active‑exploitation details.

    0000022
    71 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-6200 A vulnerability was determined in Tenda F456 1.0.0.5. The affected element is the function formwebtypelibrary of the file /goform/webtypelibrary. This manipulation of t… https://www.cve.org/CVERecord?id=CVE-2026-6200

    Post summary

    A new vulnerability (CVE-2026-6200) affecting the formwebtypelibrary function in Tenda F456 has been disclosed, with no indication of exploits, PoC, patch, or ongoing attacks.

    00000145
    57.2K followersView on X
  • Kaitan ID Security@KaitanSecurity
    Disclosure

    ⚠️ HIGH — CVE-2026-6200 A vulnerability was determined in Tenda F456 1.0.0.5. The affected element is the function formwebtypelibrary of the fi… CVSS 8.8 Full analysis → https://sec.kaitan.id/cves/CVE-2026-6200 #Tenda #CyberSecurity #InfoSec

    Post summary

    A high‑severity vulnerability (CVE-2026-6200) has been identified in the Tenda F456 1.0.0.5 firmware, affecting the formwebtypelibrary function with a CVSS score of 8.8; detailed technical analysis is available via the provided link.

    000000
    144 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-6200: HIGH] Stack-based buffer overflow vulnerability detected in Tenda F456 1.0.0.5 due to a flaw in formwebtypelibrary function. Attack can be executed remotely via manipulation of argument causing...#cve,CVE-2026-6200,#cybersecurity https://cvefind.com/CVE-2026-6200

    Post summary

    The post announces a newly identified stack‑based buffer overflow in Tenda F456 firmware, highlighting remote exploitation potential, but it provides no PoC, exploit code, or patch information.

    0000033
    620 followersView on X

Explore more