Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 24 Feb 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 23 Feb 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda f3 Tenda f3 Firmware |
|
| CPEs | cpe:2.3:h:tenda:f3:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:f3_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda
Tenda f3 Tenda f3 Firmware |
Mon, 23 Feb 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Shenzhen Tenda F3 Wireless Router firmware V12.01.01.55_multi contains a clickjacking vulnerability in the web-based administrative interface. The interface does not set the X-Frame-Options header, allowing attacker-controlled sites to embed administrative pages in an iframe and trick an authenticated administrator into unintended interactions that may result in unauthorized configuration changes. | |
| Title | Tenda F3 Clickjacking in Web Management Interface | |
| Weaknesses | CWE-1021 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-05-11T23:11:24.997Z
Reserved: 2026-02-19T19:51:07.328Z
Link: CVE-2026-27511
Updated: 2026-02-23T18:39:01.840Z
Status : Analyzed
Published: 2026-02-23T17:23:29.473
Modified: 2026-02-23T20:16:49.310
Link: CVE-2026-27511
No data.
OpenCVE Enrichment
Updated: 2026-04-16T16:45:25Z