Cybersecurity researchers have discovered a critical authentication backdoor in several Tenda router models, allowing unauthorized administrative access without requiring any password. The vulnerability, tracked as CVE-2026-11405, was disclosed by the CERT Coordination Center (CERT/CC) at Carnegie Mellon University. Despite warnings and attempts to contact the company, Tenda has not yet released a security patch for the affected firmware versions, leaving users exposed to potential network compromise. AI
RANK_REASON Disclosure of a vulnerability in a consumer hardware product.
Read on Mastodon — fosstodon.org →
- AC10
- ADCY5
- ADCY6
- Carnegie Mellon University
- CERT Coordination Center
- CVE-2026-11405
- FH1201
- India
- Software Engineering Institute
- W15EB-D
AI-generated summary · Google Gemini · from 2 sources. How we write summaries →