Il CERT Coordination Center ha scoperto una backdoor di autenticazione nel firmware di cinque modelli Tenda: garantisce accesso da amministratore senza credenziali valide e l'azienda cinese non ha ancora rilasciato una patch

CVE-2026-11405 affects five Tenda firmware builds and can bypass password checks through an undocumented admin login path in /bin/httpd.

A hidden authentication backdoor has been found in multiple Tenda router firmware versions, potentially allowing an attacker to gain administrative access to the device's web…