PT-2025-35477 · Tenda · Tenda W12

·

CVE-2025-9778

·

Published

2025-09-01

·

Updated

2025-09-01

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tenda W12 versions prior to 3.0.0.7
Description A security issue has been identified in Tenda W12. The issue involves hard-coded credentials within the file /etc ro/shadow of the Administrative Interface component. Exploitation requires local access and is considered difficult. The exploit has been publicly disclosed.
Recommendations Update Tenda W12 to version 3.0.0.7 or later.

Exploit

Fix

Using Hardcoded Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-9778

Affected Products

Tenda W12