Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xwmm-qmxv-wfh3

Опубликовано: 26 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 9.3
CVSS3: 9.8

Описание

Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) ship with a predefined default password for a built-in authentication account that is not required to be changed during initial configuration. An attacker can leverage these default credentials to gain authenticated access to the management interface.

Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) ship with a predefined default password for a built-in authentication account that is not required to be changed during initial configuration. An attacker can leverage these default credentials to gain authenticated access to the management interface.

EPSS

Процентиль: 22%
0.00071
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-1393

Связанные уязвимости

CVSS3: 9.8
nvd
8 дней назад

Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) ship with a predefined default password for a built-in authentication account that is not required to be changed during initial configuration. An attacker can leverage these default credentials to gain authenticated access to the management interface.

CVSS3: 9.8
fstec
9 дней назад

Уязвимость микропрограммного обеспечения беспроводных Wi-Fi маршрутизаторов Tenda W30E, связанная с использованием пароля по умолчанию, позволяющая нарушителю получить полный контроль над устройством

EPSS

Процентиль: 22%
0.00071
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-1393