Description
A security flaw has been discovered in Tenda AC18 15.03.05.19. Impacted is an unknown function of the file /goform/telnet of the component Telnet Handler. The manipulation results in missing authentication. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.
Published: 2026-08-31
Score: 10 Critical
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A flaw in Tenda AC18 firmware version 15.03.05.19 allows remote attackers to exploit the Telnet Handler's /goform/telnet endpoint without authentication. The missing authentication check enables an attacker to gain control of the device, potentially executing arbitrary commands or commands that affect network traffic. The vulnerability is classified with a CVSS score of 10, indicating a high severity and full impact on confidentiality, integrity, and availability from a single compromised host.

Affected Systems

Vulnerable devices are Tenda AC18 routers running firmware 15.03.05.19. No other vendors or product lines are listed as affected in the available data.

Risk and Exploitability

The attack vector is remote, leveraging the Telnet interface exposed by the router. An exploit is publicly available, and the lack of authentication permits immediate remote code execution if the device is reachable over the network. The EPSS score is not supplied, but the existence of a static public exploit and the CVSS v10 score signals a high likelihood of exploitation in practice. The vulnerability is not listed in the CISA KEV catalog.

Generated by OpenCVE AI on August 31, 2026 at 14:37 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update the router to the latest firmware that addresses the Telnet authentication flaw.
  • If a firmware update is not immediately available, block external access to the Telnet port (port 23) using the router’s firewall or network segmentation rules.
  • Disable Telnet functionality entirely if it is not required for operational purposes.

Generated by OpenCVE AI on August 31, 2026 at 14:37 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 31 Aug 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 31 Aug 2026 15:00:00 +0000

Type Values Removed Values Added
First Time appeared Tenda ac18
Vendors & Products Tenda ac18

Mon, 31 Aug 2026 13:00:00 +0000

Type Values Removed Values Added
Description A security flaw has been discovered in Tenda AC18 15.03.05.19. Impacted is an unknown function of the file /goform/telnet of the component Telnet Handler. The manipulation results in missing authentication. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.
Title Tenda AC18 Telnet telnet missing authentication
First Time appeared Tenda
Tenda ac18 Firmware
Weaknesses CWE-287
CWE-306
CPEs cpe:2.3:o:tenda:ac18_firmware:*:*:*:*:*:*:*:*
Vendors & Products Tenda
Tenda ac18 Firmware
References
Metrics cvssV2_0

{'score': 10, 'vector': 'AV:N/AC:L/Au:N/C:C/I:C/A:C/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 10, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 10, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 10, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P'}


Subscriptions

Tenda Ac18 Ac18 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-08-31T14:29:57.559Z

Reserved: 2026-08-30T17:44:12.858Z

Link: CVE-2026-82695

cve-icon Vulnrichment

Updated: 2026-08-31T14:29:53.431Z

cve-icon NVD

Status : Received

Published: 2026-08-31T13:18:29.953

Modified: 2026-08-31T15:18:06.857

Link: CVE-2026-82695

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-31T14:45:04Z

Weaknesses
  • CWE-287

    Improper Authentication

  • CWE-306

    Missing Authentication for Critical Function