Security Advisory

CVE-2026-8264

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-05-11 02:15:09
Last updated 2026-05-11 12:47:59
Assigner VulDB
State PUBLISHED

Description

A weakness has been identified in Tenda AC6 15.03.06.23. Affected by this vulnerability is the function formWifiApScan of the file /goform/WifiApScan of the component httpd. Executing a manipulation of the argument wl2g.public.country/wl5g.public.country can lead to os command injection. It is possible to launch the attack remotely. The exploit has been made available to the public and could be used for attacks.