logo

CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware

ID: de731471-c2a1-592f-acd7-d8b5e43f829b

STIX ID: report--de731471-c2a1-592f-acd7-d8b5e43f829b

Feed Name: The Hacker News

Threat Score
70/100

Date Published: 2026-07-07

Date Updated: 2026-07-18

Author: [email protected] (The Hacker News)

...
...

CERT/CC warns that several Tenda router firmware versions contain an undocumented authentication backdoor (CVE-2026-11405) in the /bin/httpd login() function that, when a specific configuration-stored plaintext password is supplied, bypasses password verification and grants administrative (role=2) web-interface access for any username; the issue is unpatched and users are advised to disable remote management and change default LAN IPs to reduce exposure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.