CVE-2025-9309
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-08-21

Last updated on: 2026-04-29

Assigner: VulDB

Description
A vulnerability was found in Tenda AC10 16.03.10.13. Affected is an unknown function of the file /etc_ro/shadow of the component MD5 Hash Handler. Performing manipulation results in hard-coded credentials. The attack needs to be approached locally. A high degree of complexity is needed for the attack. The exploitability is told to be difficult. The exploit has been made public and could be used.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-08-21
Last Modified
2026-04-29
Generated
2026-05-07
AI Q&A
2025-08-21
EPSS Evaluated
2026-05-05
NVD
EUVD
Affected Vendors & Products
Showing 2 associated CPEs
Vendor Product Version / Range
tenda ac10_firmware 16.03.10.13
tenda ac10 4.0
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-259 The product contains a hard-coded password, which it uses for its own inbound authentication or for outbound communication to external components.
CWE-798 The product contains hard-coded credentials, such as a password or cryptographic key.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability exists in the Tenda AC10 firmware version 16.03.10.13, specifically in an unknown function related to the MD5 Hash Handler in the file /etc_ro/shadow. By manipulating this component locally, an attacker can cause hard-coded credentials to be used. The attack is complex and difficult to exploit, but the exploit has been made public.


How can this vulnerability impact me? :

If exploited, this vulnerability could allow an attacker with local access to the device to manipulate authentication mechanisms, potentially gaining unauthorized access through hard-coded credentials. However, the attack is difficult to perform and requires a high degree of complexity.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart