CVE-2026-86153
- EPSS 0.39%
- Veröffentlicht 06.09.2026 01:45:15
- Zuletzt bearbeitet 08.09.2026 18:21:15
A vulnerability has been found in Tenda CP3 27.5.57.101. This affects the function CRedirServer::SetRedirectEnable of the file Functions/Redirect.cpp. The manipulation leads to improper privilege management. Remote exploitation of the attack is possi...
- EPSS 1.86%
- Veröffentlicht 06.09.2026 01:30:10
- Zuletzt bearbeitet 10.09.2026 19:17:36
A flaw has been found in Tenda CP3 27.5.57.101. The impacted element is the function CAutoAddWifi::ThreadProc of the file Functions/AutoAddWifi.cpp of the component Kylin. Executing a manipulation can lead to os command injection. The attack may be l...
CVE-2026-86151
- EPSS 2.04%
- Veröffentlicht 05.09.2026 23:45:09
- Zuletzt bearbeitet 11.09.2026 21:17:33
A vulnerability was detected in Tenda CP3 27.5.57.101. The affected element is the function sub_2F77E8 of the file Apis/system.c of the component Network Configuration Management. Performing a manipulation results in os command injection. The attack ...
CVE-2026-86150
- EPSS 0.22%
- Veröffentlicht 05.09.2026 23:17:41
- Zuletzt bearbeitet 08.09.2026 14:17:30
A security vulnerability has been detected in Tenda CP3 27.5.57.101. Impacted is an unknown function of the file custom-x/softap/hostapd. Such manipulation of the argument wpa_passphrase leads to hard-coded credentials. The attack can be launched rem...
CVE-2026-86149
- EPSS 2.04%
- Veröffentlicht 05.09.2026 22:00:09
- Zuletzt bearbeitet 08.09.2026 19:20:09
A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be initiated remot...
CVE-2026-86148
- EPSS 2.47%
- Veröffentlicht 05.09.2026 21:45:09
- Zuletzt bearbeitet 08.09.2026 18:21:15
A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command injection. It is po...
CVE-2025-5763
- EPSS 4.48%
- Veröffentlicht 06.06.2025 12:00:23
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability has been found in Tenda CP3 11.10.00.2311090948 and classified as critical. Affected by this vulnerability is the function sub_F3C8C of the file apollo. The manipulation leads to command injection. The attack can be launched remotely....
CVE-2023-30354
- EPSS 0.45%
- Veröffentlicht 10.05.2023 16:15:12
- Zuletzt bearbeitet 27.01.2025 20:15:30
Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 does not defend against physical access to U-Boot via the UART: the Wi-Fi password is shown, and the hardcoded boot password can be inserted for console access.
CVE-2023-30356
- EPSS 0.27%
- Veröffentlicht 10.05.2023 16:15:12
- Zuletzt bearbeitet 27.01.2025 20:15:31
Missing Support for an Integrity Check in Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 allows attackers to update the device with crafted firmware
CVE-2023-30351
- EPSS 0.24%
- Veröffentlicht 10.05.2023 16:15:11
- Zuletzt bearbeitet 27.01.2025 20:15:30
Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 was discovered to contain a hard-coded default password for root which is stored using weak encryption. This vulnerability allows attackers to connect to the TELNET service (or UART) by usin...