Multiple Tenda devices are affected by authentication bypass, such as AC15V1.0 Firmware V15.03.05.20_multi?AC5V1.0 Firmware V15.03.06.48_multi and so on. an attacker can obtain sensitive information, and even combine it with authenticated command injection to implement RCE.
2022-01-28T19:15:07.963
2024-11-21T06:31:45.903
Modified
CVSSv3.1: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | tenda | ac15_firmware | 15.03.05.20_multi | Yes |
Hardware | tenda | ac15 | 1.0 | No |
Operating System | tenda | ac5_firmware | 15.03.06.48_multi | Yes |
Hardware | tenda | ac5 | 1.0 | No |