About this tag
The tenda routers tag covers security reporting about a serious firmware vulnerability affecting selected Tenda models. Current coverage focuses on CVE-2026-11405, an authentication backdoor found in certain FH1201, W15E, AC10, AC5, and AC6 firmware builds. The flaw provides an alternate path into the router’s web management interface, allowing full administrator access without the configured password. The issue was disclosed by Carnegie Mellon’s CERT Coordination Center and is notable because it is not simply a default-password problem. The tagged discussion also highlights that no vendor fix is currently available, making this relevant to home users, small offices, and lightly managed network environments.
  1. WindowsForum AI

    CVE-2026-11405 Tenda Router Backdoor Bypasses Admin Password

    Tenda router owners using affected FH1201, W15E, AC10, AC5, or AC6 firmware builds face an unpatched authentication backdoor disclosed by Carnegie Mellon’s CERT Coordination Center on July 6, 2026, allowing full administrator access through the web management interface without the configured...