CVE-2026-0581: Tenda AC1206 httpd BehaviorManager formBehaviorManager command injection
A vulnerability was determined in Tenda AC1206 15.03.06.23. Affected by this issue is the function formBehaviorManager of the file /goform/BehaviorManager of the component httpd. Executing a manipulation of the argument modulename/option/data/switch can lead to command injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0581?
CVE-2026-0581 is classified as a high-severity vulnerability due to its potential for command injection.
How do I fix CVE-2026-0581?
To fix CVE-2026-0581, update your Tenda AC1206 device to the latest firmware version provided by Tenda.
What types of attacks can CVE-2026-0581 facilitate?
CVE-2026-0581 can facilitate remote command injection attacks, allowing an attacker to execute arbitrary commands on the affected device.
Which devices are affected by CVE-2026-0581?
CVE-2026-0581 affects the Tenda AC1206 router running version 15.03.06.23.
Is there a workaround for CVE-2026-0581?
Currently, there is no official workaround for CVE-2026-0581 other than applying the necessary firmware updates.