CVE-2026-86153

A vulnerability has been found in Tenda CP3 27.5.57.101. This affects the function CRedirServer::SetRedirectEnable of the file Functions/Redirect.cpp. The manipulation leads to improper privilege management. Remote exploitation of the attack is possible.

  • Published Sep 6, 2026
  • CVSS 9.4 critical
  • 0.7% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-86153 at the National Vulnerability Database