AUGUST 14, 2026
Live Feed
Back to database
Case File

CVE-2026-19791

HIGH · CVSS 8.8 Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-14 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

A stack-based buffer overflow vulnerability exists in the addStaticRoute function of the Tenda G0's web management interface, allowing remote attackers to manipulate the staticRouteNet argument. This flaw could lead to arbitrary code execution, potentially compromising the affected devices. Organizations using Tenda G0 devices should prioritize patching to mitigate the risk of exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit
GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-19791
Severity
HIGH
CVSS
8.8
EPSS
N/A

Original NVD Description

A weakness has been identified in Tenda G0 up to 20260625. The affected element is the function addStaticRoute of the file /goform/module of the component httpd web management interface. Executing a manipulation of the argument staticRouteNet can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.