First published: Thu Dec 07 2023(Updated: )
Tenda W30E V16.01.0.12(4843) was discovered to contain a Command Execution vulnerability via the function /goform/telnet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Tenda W30e Firmware | =16.01.0.12\(4843\) | |
Tenda W30e Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-49406 is classified as a high severity vulnerability due to its potential to allow command execution on the affected device.
To fix CVE-2023-49406, update the Tenda W30E firmware to a version that addresses this vulnerability.
CVE-2023-49406 affects Tenda W30E devices running firmware version 16.01.0.12(4843).
CVE-2023-49406 is a command execution vulnerability that can be exploited remotely via the '/goform/telnet' function.
Yes, CVE-2023-49406 can potentially be exploited without authentication, allowing remote attackers to execute commands.