← Database

CVE-2026-82694

CRITICAL CVSS: 10.0 Published: 2026-08-31 Modified: 2026-08-31

Description

A vulnerability was identified in Tenda AC1206 15.03.06.23. This issue affects the function R7WebsSecurityHandler of the file /goform/ate of the component Web UI. The manipulation leads to missing authentication. The attack can be initiated remotely. The exploit is publicly available and might be used.

Affected Platforms

Unknown

Weakness Type

CWE-287, CWE-306

References