Metrics
Affected Vendors & Products
Mon, 11 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 11 May 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda ac6
|
|
| Vendors & Products |
Tenda ac6
|
Mon, 11 May 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in Tenda AC6 2.0/15.03.06.23. The affected element is an unknown function of the file /goform/telnet of the component httpd. The manipulation of the argument lan.ip leads to os command injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. | |
| Title | Tenda AC6 httpd telnet os command injection | |
| First Time appeared |
Tenda
Tenda ac6 Firmware |
|
| Weaknesses | CWE-77 CWE-78 |
|
| CPEs | cpe:2.3:o:tenda:ac6_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Tenda
Tenda ac6 Firmware |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-05-11T01:00:15.246Z
Updated: 2026-05-11T10:55:16.853Z
Reserved: 2026-05-10T15:07:35.155Z
Link: CVE-2026-8259
Updated: 2026-05-11T10:55:08.536Z
Status : Undergoing Analysis
Published: 2026-05-11T02:16:27.417
Modified: 2026-05-11T15:06:30.020
Link: CVE-2026-8259
No data.
ReportizFlow