Metrics
Affected Vendors & Products
Tue, 10 Feb 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda hg10 Firmware
|
|
| CPEs | cpe:2.3:h:tenda:hg10:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:hg10_firmware:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda hg10 Firmware
|
Tue, 03 Feb 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda hg10 |
|
| Vendors & Products |
Tenda
Tenda hg10 |
Fri, 30 Jan 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 30 Jan 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in Tenda HG10 US_HG7_HG9_HG10re_300001138_en_xpon. This affects the function system of the file /boaform/formSysCmd. This manipulation of the argument sysCmd causes command injection. The attack may be initiated remotely. The exploit has been published and may be used. | |
| Title | Tenda HG10 formSysCmd system command injection | |
| Weaknesses | CWE-74 CWE-77 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-01-30T16:32:11.826Z
Updated: 2026-01-30T16:54:08.213Z
Reserved: 2026-01-30T07:57:40.795Z
Link: CVE-2026-1690
Updated: 2026-01-30T16:53:45.547Z
Status : Analyzed
Published: 2026-01-30T17:16:13.970
Modified: 2026-02-10T14:34:50.513
Link: CVE-2026-1690
No data.