Security Advisory

CVE-2026-0581

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-01-05 08:02:08
Last updated 2026-02-23 08:13:25
Assigner VulDB
CVSS score 5.3
State PUBLISHED

Description

A vulnerability was determined in Tenda AC1206 15.03.06.23. Affected by this issue is the function formBehaviorManager of the file /goform/BehaviorManager of the component httpd. Executing a manipulation of the argument modulename/option/data/switch can lead to command injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.