CVE-2026-5547: Tenda AC10 httpd formAddMacfilterRule os command injection
A vulnerability has been found in Tenda AC10 16.03.10.10multiTDE01. Affected is the function formAddMacfilterRule of the file /bin/httpd. Such manipulation leads to os command injection. It is possible to launch the attack remotely. Multiple endpoints might be affected.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-5547?
CVE-2026-5547 has a high severity rating due to the potential for remote code execution through OS command injection.
How do I fix CVE-2026-5547?
To fix CVE-2026-5547, update the Tenda AC10 firmware to a version that addresses this vulnerability.
Can CVE-2026-5547 be exploited remotely?
Yes, CVE-2026-5547 can be exploited remotely, allowing attackers to execute commands on the device.
Which software versions are affected by CVE-2026-5547?
The affected software version for CVE-2026-5547 is Tenda AC10 version 16.03.10.10_multi_TDE01.
What is the impact of CVE-2026-5547 on Tenda AC10 devices?
The impact of CVE-2026-5547 on Tenda AC10 devices includes the potential compromise of the device's security due to unauthorized command execution.