A buffer overflow vulnerability has been identified in the Tenda HG10 router (firmware version 300001138). The flaw exists in the formWanRedirect function within the /boaform/formWanRedirect file, part of the Boa Web Server component. An attacker can exploit this vulnerability by manipulating the 'if' argument to trigger a buffer overflow condition. The attack can be launched remotely without requiring physical access to the device. A public exploit has already been disclosed, increasing the risk of active exploitation. This vulnerability poses a significant risk to users of the affected Tenda HG10 device. The issue has been catalogued in VulDB and the National Vulnerability Database. IoT and home networking devices such as this are commonly targeted due to limited patch adoption by end users.