← Browse

CVE-2026-86300

Medium

Elevated severity or exploit probability.

CVSS base
7.3 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
EPSS — probability of exploitation (30 days)
0.8%
56.2th percentile
CISA KEV
Not listed
Weakness / dates
CWE-287
Published 2026-09-07 · modified 2026-09-08

Description

A flaw has been found in Tenda AC9 15.03.05.14. This impacts the function R7WebsSecurityHandler of the component Web Management. This manipulation causes improper authentication. The attack may be initiated remotely. The exploit has been published and may be used.

References

Official: NVD · CVE.org