Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-27129


An authentication bypass vulnerability exists in the HTTP authentication functionality of Tenda AC6 V5.0 V02.03.01.110. A specially crafted HTTP request can lead to arbitrary code execution. An attacker can send packets to trigger this vulnerability.


Published

2025-08-20T14:15:42.727

Last Modified

2025-11-03T19:15:49.433

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-288

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System tenda ac6_firmware 02.03.01.110 Yes
Hardware tenda ac6 5.0 No

References