Description
A security vulnerability has been detected in Tenda CP3 27.5.57.101. Impacted is an unknown function of the file custom-x/softap/hostapd. Such manipulation of the argument wpa_passphrase leads to hard-coded credentials. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.
Published: 2026-09-05
Score: 5.1 Medium
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability arises in the hostapd component of Tenda CP3 firmware 27.5.57.101. By manipulating the wpa_passphrase parameter, an attacker can trigger the use of hard‑coded credentials, allowing unauthorized authentication to the device. This can compromise the confidentiality, integrity, or availability of the network managed by the AP if the attacker gains administrative control.

Affected Systems

The flaw affects Tenda CP3 routers running firmware version 27.5.57.101. Other versions not listed are assumed not to be impacted unless they include the same hostapd implementation. Users of the CP3 product line should verify their firmware version against the vulnerability listing.

Risk and Exploitability

The CVSS score of 5.1 points to a moderate risk. The EPSS score is not available, and the issue is not listed in the CISA KEV catalog, suggesting it is not yet widely exploited. However, the attack vector is remote, likely over the wireless interface, which permits any nearby device to submit a crafted wpa_passphrase. Because the credentials are hard‑coded, an attacker does not need to discover passwords; they can simply authenticate with the known default values once the flaw is triggered.

Generated by OpenCVE AI on September 6, 2026 at 00:20 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update the router to the latest Tenda firmware that fixes the hostapd credential handling flaw.
  • Change the default Wi‑Fi password and disable WPS to prevent unauthorized access using known credentials.
  • Restrict management access to the device by enabling firewall rules or isolating the AP on a non‑public VLAN.

Generated by OpenCVE AI on September 6, 2026 at 00:20 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 06 Sep 2026 00:45:00 +0000

Type Values Removed Values Added
First Time appeared Tenda cp3
Vendors & Products Tenda cp3

Sat, 05 Sep 2026 23:15:00 +0000

Type Values Removed Values Added
Description A security vulnerability has been detected in Tenda CP3 27.5.57.101. Impacted is an unknown function of the file custom-x/softap/hostapd. Such manipulation of the argument wpa_passphrase leads to hard-coded credentials. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.
Title Tenda CP3 hostapd hard-coded credentials
First Time appeared Tenda
Tenda cp3 Firmware
Weaknesses CWE-259
CWE-798
CPEs cpe:2.3:o:tenda:cp3_firmware:*:*:*:*:*:*:*:*
Vendors & Products Tenda
Tenda cp3 Firmware
References
Metrics cvssV2_0

{'score': 3.3, 'vector': 'AV:N/AC:L/Au:M/C:P/I:N/A:N/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 4.1, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:N/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 4.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:N/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 5.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:N/VA:N/SC:L/SI:N/SA:N/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-05T23:00:12.424Z

Reserved: 2026-09-05T07:40:23.987Z

Link: CVE-2026-86150

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-05T23:17:41.337

Modified: 2026-09-05T23:17:41.337

Link: CVE-2026-86150

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-06T00:30:04Z

Weaknesses
  • CWE-259

    Use of Hard-coded Password

  • CWE-798

    Use of Hard-coded Credentials