What is CVE-2026-19792?
A buffer overflow vulnerability was discovered in the setPortMapping function of the httpd web management interface on Tenda G0 devices up to build 20260625. The flaw can be exploited by manipulating the portMappingServer/porMappingtInternal/portMappingExternal arguments. It is recommended to restrict access to the management interface until a vendor patch is released.
Azərbaycanca: Tenda G0 cihazlarının 20260625 build versiyasına qədər olan httpd idarəetmə interfeysindəki setPortMapping funksiyasında buffer overflow (bufer daşması) zəifliyi aşkar edilib. Bu boşluq portMappingServer/porMappingtInternal/portMappingExternal arqumentləri vasitəsilə istismar edilə bilər. Təsirlənən cihazlar üçün vendor tərəfindən yamaq yayımlanana qədər idarəetmə interfeysinə girişi məhdudlaşdırmaq tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-119; shared vendor: Tenda
FAQ2
In which httpd function was the CVE-2026-19792 vulnerability discovered on Tenda G0 devices?
The vulnerability was discovered in the setPortMapping function of the httpd web management interface.
What temporary security measure is recommended for Tenda G0 devices regarding CVE-2026-19792?
It is recommended to restrict access to the management interface until a vendor patch is released.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.