A buffer overflow vulnerability has been identified in the Tenda HG10 router (firmware version 300001138). The vulnerability exists in the formWlanSetup function within the /boaform/formWlanSetup file, part of the Boa Web Server component. An attacker can manipulate the 'ssid' argument to trigger a buffer overflow condition. The vulnerability is remotely exploitable, requiring no physical access to the device. A public exploit is already available, increasing the risk of active exploitation. IoT/router devices running this firmware are at risk of being compromised. The vulnerability has been catalogued in VulDB and NVD databases. Tenda HG10 is a consumer-grade router/gateway device, making this a significant risk for home and small office networks.