A flaw has been found in Tenda i3 1.0.0.6(2204). This impacts the function formSetCfm of the file /goform/setcfm. This manipulation of the argument funcpara1 causes stack-based buffer overflow.
Remote exploitation of the attack is possible. The exploit has been published and may be used.
Attack Parameters
Impact Assessment
CVSS Vector v4.0