在腾达(Tenda)CP3 固件版本 27.5.57.101 中发现一个缺陷。受影响的元素是 文件中 Kylin 组件的 函数。执行特定操作可能导致操作系统命令注入。该攻击可以远程发起。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-86167 | 9.9 CRITICAL | Tenda HG10 Boa formgponConf os command injection |
| CVE-2026-86165 | 9.8 CRITICAL | Tenda HG10 formURL buffer overflow |
| CVE-2026-86153 | 9.1 CRITICAL | Tenda CP3 Redirect.cpp SetRedirectEnable privileges management |
| CVE-2026-86166 | 8.8 HIGH | Tenda HG10 Boa Web Server formWanRedirect buffer overflow |
No comments yet