Description
A vulnerability was determined in Tenda AC1206 15.03.06.23. This vulnerability affects the function TendaTelnet of the file /goform/telnet of the component Web UI. Executing a manipulation can lead to missing authentication. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.
Published: 2026-08-31
Score: 10 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution via unauthenticated telnet access
Action: Immediate Patch
AI Analysis

Impact

The Tenda AC1206 router contains a flaw in the Web UI telnet endpoint (/goform/telnet). An attacker can manipulate the function TendaTelnet to bypass authentication, gaining full telnet access without credentials. This flaw is classified as an authentication bypass and an access control weakness (CWE-287, CWE-306), allowing an attacker to execute arbitrary commands on the device and potentially engage in further lateral movement.

Affected Systems

The vulnerability is present in the Tenda AC1206 router running firmware version 15.03.06.23. Only devices with this exact firmware build are confirmed to be affected.

Risk and Exploitability

The flaw carries a maximum CVSS score of 10 and is exploitable remotely through the router’s public Web UI. While an EPSS score is not available, the vulnerability has been publicly disclosed and demonstrated, and it is not listed in the CISA KEV catalog at this time. An attacker with network visibility to the router can launch the attack without prior authentication, indicating a high likelihood of exploitation and very high risk to confidentiality, integrity, and availability.

Generated by OpenCVE AI on August 31, 2026 at 13:20 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the router firmware to a version that removes the unauthenticated telnet functionality or includes the vendor’s security patch
  • Disable the telnet service on the device or block external access to the telnet port using the router’s firewall rules
  • Change the default administrative credentials and enforce strong password policies to reduce the impact of any residual vulnerabilities

Generated by OpenCVE AI on August 31, 2026 at 13:20 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 31 Aug 2026 22:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 31 Aug 2026 13:45:00 +0000

Type Values Removed Values Added
First Time appeared Tenda ac1206
Vendors & Products Tenda ac1206

Mon, 31 Aug 2026 12:30:00 +0000

Type Values Removed Values Added
Description A vulnerability was determined in Tenda AC1206 15.03.06.23. This vulnerability affects the function TendaTelnet of the file /goform/telnet of the component Web UI. Executing a manipulation can lead to missing authentication. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.
Title Tenda AC1206 Web UI telnet TendaTelnet missing authentication
First Time appeared Tenda
Tenda ac1206 Firmware
Weaknesses CWE-287
CWE-306
CPEs cpe:2.3:o:tenda:ac1206_firmware:*:*:*:*:*:*:*:*
Vendors & Products Tenda
Tenda ac1206 Firmware
References
Metrics cvssV2_0

{'score': 10, 'vector': 'AV:N/AC:L/Au:N/C:C/I:C/A:C/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 10, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 10, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 10, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P'}


Subscriptions

Tenda Ac1206 Ac1206 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-08-31T22:03:13.167Z

Reserved: 2026-08-30T17:42:02.868Z

Link: CVE-2026-82693

cve-icon Vulnrichment

Updated: 2026-08-31T21:57:09.193Z

cve-icon NVD

Status : Deferred

Published: 2026-08-31T13:18:29.580

Modified: 2026-08-31T22:17:29.873

Link: CVE-2026-82693

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-31T13:30:04Z

Weaknesses
  • CWE-287

    Improper Authentication

  • CWE-306

    Missing Authentication for Critical Function