Tenda 4G03 Pro vulnerabilities

3 known vulnerabilities affecting tenda/4g03_pro.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM2

Vulnerabilities

Page 1 of 1
CVE-2026-5527MEDIUMCVSS 5.5v1.0v1.0re+2 more2026-04-05
CVE-2026-5527 [MEDIUM] CWE-320 CVE-2026-5527: A weakness has been identified in Tenda 4G03 Pro 1.0/1.0re/01.bin/04.03.01.53. Affected by this issu A weakness has been identified in Tenda 4G03 Pro 1.0/1.0re/01.bin/04.03.01.53. Affected by this issue is some unknown functionality of the file /etc/www/pem/server.key of the component ECDSA P-256 Private Key Handler. This manipulation causes use of hard-coded cryptographic key . It is possible to initiate the attack remotely.
cvelistv5nvd
CVE-2026-5526MEDIUMCVSS 6.9v1.0v1.1+56 more2026-04-04
CVE-2026-5526 [MEDIUM] CWE-266 CVE-2026-5526: A security flaw has been discovered in Tenda 4G03 Pro up to 1.0/1.1/04.03.01.53/192.168.0.1. Affecte A security flaw has been discovered in Tenda 4G03 Pro up to 1.0/1.1/04.03.01.53/192.168.0.1. Affected by this vulnerability is an unknown functionality of the file /bin/httpd. The manipulation results in improper access controls. The attack may be performed from remote. The exploit has been released to the public and may be used for attacks.
cvelistv5nvd
CVE-2025-15371HIGHCVSS 8.5v1.0.0.35v3.0.0.8(4008)+5 more2025-12-31
CVE-2025-15371 [HIGH] CWE-259 CVE-2025-15371: A vulnerability has been found in Tenda i24, 4G03 Pro, 4G05, 4G08, G0-8G-PoE, Nova MW5G and TEG5328F A vulnerability has been found in Tenda i24, 4G03 Pro, 4G05, 4G08, G0-8G-PoE, Nova MW5G and TEG5328F up to 65.10.15.6. Affected is an unknown function of the component Shadow File. Such manipulation with the input Fireitup leads to hard-coded credentials. An attack has to be approached locally. The exploit has been disclosed to the public and may be u
cvelistv5nvd