CVE-2026-82693: Tenda AC1206 Web UI telnet TendaTelnet missing authentication
Published Aug 31, 2026
·Updated
A vulnerability was determined in Tenda AC1206 15.03.06.23. This vulnerability affects the function TendaTelnet of the file /goform/telnet of the component Web UI. Executing a manipulation can lead to missing authentication. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
1 affected component
Tenda Tenda AC1206 Web UI=15.03.06.23
Event History
Aug 31, 2026
CVE Published
via MITRE·12:15 PM
Data Sourced
via MITRE·12:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attack can be launched remotely and does not require authentication or user interaction. It affects the TendaTelnet function exposed through the Web UI endpoint /goform/telnet.
2
Is public exploit information available?
Yes. The exploit has been publicly disclosed and may be used by attackers.
3
Which version is identified as affected?
The reported affected version is Tenda AC1206 15.03.06.23.