CVE-2026-1610

Severity CVSS v4.0:
HIGH
Type:
CWE-259 Use of Hard-coded Password
Publication date:
29/01/2026
Last modified:
29/01/2026

Description

A vulnerability was found in Tenda AX12 Pro V2 16.03.49.24_cn. Affected by this issue is some unknown functionality of the component Telnet Service. Performing a manipulation results in hard-coded credentials. The attack is possible to be carried out remotely. A high degree of complexity is needed for the attack. The exploitation is known to be difficult. The exploit has been made public and could be used.