All 4 CVE vulnerabilities found in Tenda AC7, with AI-generated Chinese analysis, references, and POCs.
Vendor: Shenzhen Tenda Technology Co., Ltd.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-24441 | Tenda AC7 Transmits Admin Credentials Without HTTPS Protection CWE-319 | 9.1AI | CriticalAI | 2026-02-03 |
| CVE-2026-24434 | Tenda AC7 Web Interface Lacks CSRF Protections for Admin Actions CWE-352 | 6.5AI | MediumAI | 2026-02-03 |
| CVE-2026-24427 | Tenda AC7 Exposes Admin Credentials in Configuration Responses CWE-201 | 8.1AI | HighAI | 2026-02-03 |
| CVE-2026-24426 | Tenda AC7 Reflected XSS via Web Interface Output Encoding CWE-79 | 6.1AI | MediumAI | 2026-02-03 |
All 4 known CVE vulnerabilities affecting Tenda AC7 with full Chinese analysis, references, and POCs where available.