Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-26136 | Incorrect access control in the endpoint /goform/ate of Tenda AC10 v4.0 firmware v16.03.10.09_multi_TDE01 allows attackers to escalate privileges or access sensitive components via a crafted request. |
Wed, 03 Sep 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda ac10 Firmware
|
|
| CPEs | cpe:2.3:h:tenda:ac10:4.0:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac10_firmware:16.03.10.09_multi_tde01:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda ac10 Firmware
|
Mon, 01 Sep 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda ac10 |
|
| Vendors & Products |
Tenda
Tenda ac10 |
Thu, 28 Aug 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 | |
| Metrics |
cvssV3_1
|
Thu, 28 Aug 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Incorrect access control in the endpoint /goform/ate of Tenda AC10 v4.0 firmware v16.03.10.09_multi_TDE01 allows attackers to escalate privileges or access sensitive components via a crafted request. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-08-28T19:56:47.808Z
Reserved: 2025-08-17T00:00:00.000Z
Link: CVE-2025-57219
Updated: 2025-08-28T19:56:42.380Z
Status : Analyzed
Published: 2025-08-28T19:15:33.813
Modified: 2025-09-03T16:11:12.023
Link: CVE-2025-57219
No data.
OpenCVE Enrichment
Updated: 2025-09-01T09:02:57Z
EUVD