First published: Fri Jan 28 2022(Updated: )
Multiple Tenda devices are affected by authentication bypass, such as AC15V1.0 Firmware V15.03.05.20_multi?AC5V1.0 Firmware V15.03.06.48_multi and so on. an attacker can obtain sensitive information, and even combine it with authenticated command injection to implement RCE.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda ac15 firmware | =15.03.05.20_multi | |
Tenda AC15 | =1.0 | |
Tenda Ac5 Firmware | =15.03.06.48_multi | |
Tenda AC5 | =1.0 | |
All of | ||
Tenda ac15 firmware | =15.03.05.20_multi | |
Tenda AC15 | =1.0 | |
All of | ||
Tenda Ac5 Firmware | =15.03.06.48_multi | |
Tenda AC5 | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this authentication bypass vulnerability is CVE-2021-44971.
Multiple Tenda devices, such as AC15V1.0 Firmware V15.03.05.20_multi and AC5V1.0 Firmware V15.03.06.48_multi, are affected by this authentication bypass vulnerability.
The severity rating of CVE-2021-44971 is critical with a score of 9.8.
An attacker can exploit this vulnerability to obtain sensitive information, and even combine it with authenticated command injection to implement Remote Code Execution (RCE).
Please refer to the references provided for information on available fixes or patches for this vulnerability.