Ghostwire

CVE-2026-7102: A vulnerability was found in Tenda F456 1.0.0.5. This impacts the function FromWriteFacMac of the file...

MEDIUM CVSS 5.5 EPSS 2.73%

Published: April 27, 2026 | Last Modified: April 27, 2026

Description

A vulnerability was found in Tenda F456 1.0.0.5. This impacts the function FromWriteFacMac of the file /goform/WriteFacMac of the component httpd. The manipulation of the argument mac results in command injection. The attack can be executed remotely. The exploit has been made public and could be used.

Ghostwire Analysis — What This Means Practically

Exploitation Probability (EPSS): Moderate — 2.73% (86th percentile)

Measurable exploitation probability. Should be patched in the normal vulnerability management cycle.

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (2 articles)

References