CVE-2024-46433

A default credentials vulnerability in Tenda W18E V16.01.0.8(1625) allows unauthenticated remote attackers to access the web management portal using the default rzadmin account with administrative privileges.
CVSS

No CVSS.

References
Link Resource
https://reddassolutions.com/blog/tenda_w18e_security_research Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tenda:w18e_firmware:16.01.0.8\(1625\):*:*:*:*:*:*:*
cpe:2.3:h:tenda:w18e:-:*:*:*:*:*:*:*

History

25 Mar 2025, 18:13

Type Values Removed Values Added
References () https://reddassolutions.com/blog/tenda_w18e_security_research - () https://reddassolutions.com/blog/tenda_w18e_security_research - Exploit, Third Party Advisory
CPE cpe:2.3:o:tenda:w18e_firmware:16.01.0.8\(1625\):*:*:*:*:*:*:*
cpe:2.3:h:tenda:w18e:-:*:*:*:*:*:*:*
First Time Tenda w18e
Tenda
Tenda w18e Firmware

10 Feb 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-10 19:15

Updated : 2025-03-25 18:13


NVD link : CVE-2024-46433

Mitre link : CVE-2024-46433


JSON object : View

Products Affected

tenda

  • w18e_firmware
  • w18e
CWE

No CWE.