An issue in Tenda W18E v.2.0 v.16.01.0.11 allows an attacker to execute arbitrary code via the editing functionality of the account module in the goform/setmodules route.
2025-05-28T16:15:33.240
2025-06-03T15:36:32.347
Analyzed
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | tenda | w18e_firmware | 16.01.0.11\(2044\) | Yes |
Hardware | tenda | w18e | 2.0 | No |