TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2026-24437

MEDIUM
5.5

Beschreibung

Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) serve sensitive administrative content without appropriate cache-control directives. As a result, browsers may store credential-bearing responses locally, exposing them to subsequent unauthorized access.

CVE Details

CVSS v3.1 Bewertung5.5
SchweregradMEDIUM
CVSS VektorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
AngriffsvektorLOCAL
KomplexitatLOW
Erforderliche PrivilegienLOW
BenutzerinteraktionNONE
Veroffentlicht1/26/2026
Zuletzt geandert1/28/2026
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

tenda:w30etenda:w30e_firmware

Schwachen (CWE)

CWE-525

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.