CVE-2026-4554: Tenda F453 WriteFacMac FormWriteFacMac privilege escalation
A security flaw has been discovered in Tenda F453 1.0.0.3. The affected element is the function FormWriteFacMac of the file /goform/WriteFacMac. The manipulation of the argument mac results in command injection. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-4554?
The severity of CVE-2026-4554 is considered high due to the potential for privilege escalation and command injection.
How do I fix CVE-2026-4554?
To fix CVE-2026-4554, update the Tenda F453 firmware to the latest version that addresses this vulnerability.
What is affected by CVE-2026-4554?
CVE-2026-4554 affects Tenda F453 version 1.0.0.3 specifically.
What type of vulnerability is CVE-2026-4554?
CVE-2026-4554 is a privilege escalation vulnerability that allows command injection.
Can CVE-2026-4554 be exploited remotely?
Yes, CVE-2026-4554 can be exploited remotely if the vulnerabilities are exposed through the affected service.