CVE-2026-3380:
Buffer overflow vulnerability in Tenda F453 1.0.0.3 router's frmL7ImForm function allows remote attackers to execute arbitrary code.
Score
A numerical rating that indicates how dangerous this vulnerability is.
8.8High- Published Date:Mar 1, 2026
- CISA KEV Date:*No Data*
- Industries Affected:20
Threat Predictions
- EPSS Score:0.1
- EPSS Percentile:23%
Exploitability
- Score:2.8
- Attack Vector:NETWORK
- Attack Complexity:LOW
- Privileges Required:LOW
- User Interaction:NONE
- Scope:UNCHANGED
Impact
- Score:5.9
- Confidentiality Impact:HIGH
- Integrity Impact:HIGH
- Availability Impact:HIGH
Description Preview
Buffer overflow vulnerability in Tenda F453 1.0.0.3 router's frmL7ImForm function allows remote attackers to execute arbitrary code.
Overview
The Tenda F453 router vulnerability presents a significant security risk due to its high severity and ease of exploitation. With a CVSS v3.1 base score of 8.8 (High), this buffer overflow allows attackers to potentially execute arbitrary code, compromising the confidentiality, integrity, and availability of the affected system. The vulnerability's network attack vector, low attack complexity, and the availability of a public exploit make it particularly concerning. Organizations and individuals using this router model should take immediate action to mitigate the risk.
Remediation
- To address this vulnerability, consider the following remediation steps:
- 1. Check if your Tenda F453 router is running firmware version 1.0.0.3.
- 2. Visit the official Tenda website to see if a patched firmware version is available.
- 3. If an update is available, apply it immediately following the manufacturer's instructions.
- 4. If no patch is available, consider replacing the router with a more secure alternative.
- 5. Implement network segmentation to isolate vulnerable devices.
- 6. Monitor for suspicious network activity that could indicate exploitation attempts.
- 7. Regularly check for firmware updates and security advisories from Tenda.
- 8. Implement strong access controls and change default credentials on all network devices.
References
- [1] GitHub, "Tenda F453 Vulnerability Details," https://github.com/Litengzheng/vul_db/blob/main/F453/vul_81/README.md
- [2] VulDB, "Tenda F453 1.0.0.3 frmL7ImForm Buffer Overflow," https://vuldb.com/?id.348265
- [3] Tenda, "Official Website," https://www.tenda.com.cn/
- [4] VulDB, "Submission Information," https://vuldb.com/?submit.759629
- [5] VulDB, "CTI Information," https://vuldb.com/?ctiid.348265
Industries Affected
Below is a list of industries most commonly impacted or potentially at risk based on intelligence.