CVE-2026-3271: Tenda f453 Firmware

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

A vulnerability was found in Tenda F453 1.0.0.3. This impacts the function fromP2pListFilter of the file /goform/P2pListFilterof of the component httpd. The manipulation of the argument page results in buffer overflow. The attack may be launched remotely. The exploit has been made public and could be used.

Affected products

  • Tenda f453 Firmware: version 1.0.0.3 only

Published 2026-02-27. Last modified 2026-06-17.