Skip to main content

Share story

Security

Critical Tenda Router Backdoor Leaves Multiple Models Vulnerable to Admin Access

Critical Tenda Router Backdoor Leaves Multiple Models Vulnerable to Admin Access Image: Primary
CERT/CC disclosed CVE-2026-11405, a critical firmware vulnerability affecting several Tenda router models, the organization said. The undocumented authentication backdoor allows attackers to gain administrator access without using the configured login credentials. No firmware update is currently available, as Tenda has yet to respond to researchers. According to the advisory, the vulnerability exists within the firmware's built-in web management interface. While the router first validates the configured administrator password using its normal authentication routine, a secondary hidden authentication path is executed if that verification fails. The firmware retrieves an internally stored password and compares it directly with the password supplied by the user. If the hidden password matches, the firmware grants a full administrator session regardless of the username entered. CERT/CC identified the vulnerability in firmware for the FH1201, W15E, AC10, AC5, and AC6 router families, although it notes that additional models or firmware versions may also be affected. The advisory does not identify whether the undocumented login mechanism was intentionally implemented or left behind during development. An attacker successfully exploiting the backdoor gains unrestricted control over the router. Administrative access allows changes to DNS settings, firewall rules, firmware configuration, port forwarding, remote management, and administrator credentials. With no firmware update currently available, CERT/CC recommends that users disable remote web management wherever possible and restrict access to the router's administrative interface to trusted devices on the local network.
Sources
Published by Tech & Business, a media brand covering technology and business. This story was sourced from Guru3D and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
AI Science
AI Science

Preprint reports schema-free generation of valid enterprise test data

Researchers report in an arXiv preprint that their Generalist Populator agent generated enterprise data with 100% constraint satisfaction and 0.88 average marginal fidelity across ten simulated environments without accessing datab...

AI Science
AI Science

Preprint reports task-completion gains from agent-generated interfaces

Researchers report in an arXiv preprint that training an agent to generate interactive interfaces improved a 4B model's Pass@3 task-completion score from 9.33% to 58.00%. Their GenUI-Harness pairs an agent that retrieves informati...

AI Security
AI Security

Artemis opens private preview of Orion-1 cyber defense model

Artemis Security has made Orion-1 available to selected customers through a private preview of its security platform. The company says the model investigates threats across enterprise systems, produces verdicts with stated confide...