MEDIUM
Tenda AC8 Web UploadCfg route_set_user_policy_rule os command injection
Published Mar 16, 2026
5.1
MEDIUMCVSS 4.0
EPSS 8.24%
Description
A security flaw has been discovered in Tenda AC8 16.03.50.11. This affects the function route_set_user_policy_rule of the file /cgi-bin/UploadCfg of the component Web Interface. The manipulation of the argument wans.policy.list1 results in os command injection. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks.
Affected products
-
- Version 16.03.50.11StatusaffectedConstraints-
- Version
AND
- 16.03.50.11
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (2)
References (5)
- https://github.com/digitalandrew/tenda_ac8_v5/blob/main/poc_cmdi_config_upload.py exploit
- https://vuldb.com/?ctiid.351211 signaturepermissions-requiredPermissions RequiredVDB Entry
- https://vuldb.com/?id.351211 vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry
- https://vuldb.com/?submit.771771 third-party-advisoryExploitThird Party AdvisoryVDB Entry
- https://www.tenda.com.cn/ product
| Link | Providers | Tags |
|---|---|---|
| https://github.com/digitalandrew/tenda_ac8_v5/blob/main/poc_cmdi_config_upload.py | exploit | |
| https://vuldb.com/?ctiid.351211 | signaturepermissions-requiredPermissions RequiredVDB Entry | |
| https://vuldb.com/?id.351211 | vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry | |
| https://vuldb.com/?submit.771771 | third-party-advisoryExploitThird Party AdvisoryVDB Entry | |
| https://www.tenda.com.cn/ | product |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Mar 16, 2026
Updated Mar 16, 2026
Reserved Mar 16, 2026
Link CVE-2026-4253
CISA Vulnrichment
Updated Mar 16, 2026