CVE-2026-2908 | Tenda HG9 300001138 Loopback Detection Configuration Endpoint /boaform/formLoopBack Ethtype stack-based overflow
A vulnerability, which was classified as critical, was found in Tenda HG9 300001138. Affected by this issue is some unknown functionality of the file /boaform/formLoopBack of the component Loopback Detection Configuration Endpoint. Such manipulation of the argument Ethtype leads to stack-based buffer overflow.
This vulnerability is documented as CVE-2026-2908. The attack can be executed remotely. Additionally, an exploit exists.