CVE-2026-0640CRITICAL 9.8EPSS p85.6%
CVE-2026-0640CVE-2026-0640
Description
A weakness has been identified in Tenda AC23 16.03.07.52. This affects the function sscanf of the file /goform/PowerSaveSet. Executing a manipulation of the argument Time can lead to buffer overflow. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.
Scoring
| CVSS 3.1 | 9.8 (CRITICAL) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 2.99% probability of exploitation · percentile 85.6% · 2026-06-19T12:03:05Z |
| Published | 2026-01-06 |
| Last modified | 2026-01-15 |
Underlying weaknesses· 2
References
- https://github.com/xyh4ck/iot_poc/blob/main/Tenda%20AC23_Buffer_Overflow/Tenda%20AC23_Buffer_Overflow.md
- https://github.com/xyh4ck/iot_poc/blob/main/Tenda%20AC23_Buffer_Overflow/Tenda%20AC23_Buffer_Overflow.md#poc
- https://vuldb.com/?ctiid.339683
- https://vuldb.com/?id.339683
- https://vuldb.com/?submit.731772
- https://www.tenda.com.cn/
2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Improper Restriction of Operations within the Bounds of a Memory Buffercwe-119 | 0% | live |
| Weakness | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')cwe-120 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.