Impact
The Tenda AC1206 router contains a flaw in the Web UI telnet endpoint (/goform/telnet). An attacker can manipulate the function TendaTelnet to bypass authentication, gaining full telnet access without credentials. This flaw is classified as an authentication bypass and an access control weakness (CWE-287, CWE-306), allowing an attacker to execute arbitrary commands on the device and potentially engage in further lateral movement.
Affected Systems
The vulnerability is present in the Tenda AC1206 router running firmware version 15.03.06.23. Only devices with this exact firmware build are confirmed to be affected.
Risk and Exploitability
The flaw carries a maximum CVSS score of 10 and is exploitable remotely through the router’s public Web UI. While an EPSS score is not available, the vulnerability has been publicly disclosed and demonstrated, and it is not listed in the CISA KEV catalog at this time. An attacker with network visibility to the router can launch the attack without prior authentication, indicating a high likelihood of exploitation and very high risk to confidentiality, integrity, and availability.
OpenCVE Enrichment