CVE-2018-25317Critical· 9.8▾ AbyssalPoC availableTenda W3002R/A302/W309R wireless routers version V5.07.64_en contain a cookie session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient session validation. Attackers can send G…
▾ Abyssal zone — Critical with a public exploit or in-the-wild use
impact 53.9 · likelihood 0.1 · exploitation 12
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.7%
Tenda W3002R/A302/W309R wireless routers version V5.07.64_en contain a cookie session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient session validation. Attackers can send GET requests to the /goform/AdvSetDns endpoint with a crafted admin language cookie to change primary and secondary DNS servers, redirecting user traffic to malicious DNS servers.
w309r_firmware = 5.07.64_ena302_firmware = 5.07.64_enw3002r_firmware = 5.07.64_enRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-90688Medium· 6.5A vulnerability was identified in Tenda W20E 15.11.0.61068_1546_841_CN_TDC
CVE-2026-86300High· 7.3A flaw has been found in Tenda AC9 15.03.05.14
CVE-2026-86167Critical· 9.9A vulnerability was identified in Tenda HG10 300001138
CVE-2026-86166High· 8.8A vulnerability was determined in Tenda HG10 300001138
CVE-2026-86165Critical· 9.8A vulnerability was found in Tenda HG10 300001138
CVE-2026-86151Critical· 9.1A vulnerability was detected in Tenda CP3 27.5.57.101