A vulnerability classified as critical was found in Tenda F453 1.0.0.3. Affected is the function
fromAdvSetWan of the file /goform/AdvSetWan of the component httpd. Executing a manipulation of the argument wanmode/PPPOEPassword can lead to buffer overflow.
This vulnerability is tracked as CVE-2026-3398. The attack can be launched remotely. Moreover, an exploit is present.