Ghostwire

CVE-2026-19821: A vulnerability was determined in Tenda AC12 15.03.06.23_multi_TD01. This vulnerability affects the function...

HIGH CVSS 8.8 Exploit Available

Published: August 14, 2026 | Last Modified: August 14, 2026

Description

A vulnerability was determined in Tenda AC12 15.03.06.23_multi_TD01. This vulnerability affects the function formSetRebootTimer of the file /goform/SetSysAutoRebbotCfg of the component httpd web management interface. This manipulation of the argument rebootTime causes buffer overflow. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

References