在 Tenda CP3 27.5.57.101 中已发现一个漏洞。该漏洞影响位于 文件中的 函数。通过对该函数参数的操纵,会导致权限管理不当。该漏洞可通过远程方式被利用(即远程攻击者可在不本地访问的情况下触发)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-86152 | 10.0 CRITICAL | Tenda CP3 Kylin AutoAddWifi.cpp ThreadProc os command injection |
| CVE-2026-86167 | 9.9 CRITICAL | Tenda HG10 Boa formgponConf os command injection |
| CVE-2026-86165 | 9.8 CRITICAL | Tenda HG10 formURL buffer overflow |
| CVE-2026-86166 | 8.8 HIGH | Tenda HG10 Boa Web Server formWanRedirect buffer overflow |
No comments yet