CVE-2026-5527
Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
05/04/2026
Last modified:
05/04/2026
Description
A weakness has been identified in Tenda 4G03 Pro 1.0/1.0re/01.bin/04.03.01.53. Affected by this issue is some unknown functionality of the file /etc/www/pem/server.key of the component ECDSA P-256 Private Key Handler. This manipulation causes use of hard-coded cryptographic key<br />
. It is possible to initiate the attack remotely.
Impact
Base Score 4.0
5.50
Severity 4.0
MEDIUM
Base Score 3.x
5.30
Severity 3.x
MEDIUM
Base Score 2.0
5.00
Severity 2.0
MEDIUM



