Impact
A stack-based buffer overflow exists in the Samba configuration endpoint of the Tenda HG9 firmware, where manipulation of the sambaCap parameter overflows the stack. This flaw can allow an attacker to execute arbitrary code, representing a high severity vulnerability according to CVSS. The weakness is identified as CWE-119 (Improper Restriction of Operations within the Bounds of a Buffer) and CWE-121 (Stack-based Buffer Overwrite).
Affected Systems
The affected devices are Tenda HG9 routers running firmware version 300001138. The vulnerable component is accessed via the /boaform/formSamba endpoint of the router’s administration interface.
Risk and Exploitability
The CVSS score of 8.7 indicates severe impact, while the EPSS score of less than 1% shows a low but non-zero likelihood of exploitation. The vulnerability is not listed in the CISA KEV catalog, but public exploits have already been released, enabling remote attackers to trigger the overflow and potentially gain full control over the device.
OpenCVE Enrichment