CyberICT

CVE-2026-82694

Unspecified · Published August 31, 2026

CVSS v3.1

CRITICAL

Description

A vulnerability was identified in Tenda AC1206 15.03.06.23. This issue affects the function R7WebsSecurityHandler of the file /goform/ate of the component Web UI. The manipulation leads to missing authentication. The attack can be initiated remotely. The exploit is publicly available and might be used.

Affected Products

    CVSS Vector

    CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H