Executive brief
Tenda CP3, a wireless network access point/router, contains a privilege management flaw in its redirect server component. An attacker can exploit this remotely to gain elevated privileges, potentially gaining full control of the device and the networks it manages. This could lead to unauthorized network access, data interception, or device compromise.
Technical details
The vulnerability exists in the CRedirServer::SetRedirectEnable function within Functions/Redirect.cpp of Tenda CP3 firmware version 27.5.57.101. The flaw involves improper privilege management, allowing an unauthenticated remote attacker to escalate privileges or bypass access controls. The attack is remotely exploitable without requiring special preconditions. Successful exploitation grants an attacker elevated privileges on the affected device. A patch or updated firmware version should be available from Tenda.
Affected products
- Tenda CP3 27.5.57.101
Timeline
- 2026-09-06: disclosed