Report: CVE-2026-8259 - Tenda AC6 httpd telnet os command injection

Report: CVE-2026-8259 - Tenda AC6 httpd telnet os command injection

CVE ID :CVE-2026-8259 Published : 11 May 2026, 2:16 a.m. | 15 minutes ago Description :A vulnerability has been found in Tenda AC6 2.0/15.03.06.23. The affected element is an unknown function of the file /goform/telnet of the component httpd. The manipulation of the argument lan.ip leads to os command injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. Severity: 5.8 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Impact: command injection