AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2026-24440

HIGH · CVSS 8.8 EPSS 0.27%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-01-26 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.8. See the original NVD description below for full technical details.

CVE
CVE-2026-24440
Severity
HIGH
CVSS
8.8
EPSS
0.27%

Original NVD Description

Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) allow account passwords to be changed through the maintenance interface without requiring verification of the existing password. This enables unauthorized password changes when access to the affected endpoint is obtained.

Related CVEs

Other vulnerabilities affecting the same vendor(s)