Skip to content

CVE-2026-11405

CVE

Threat entity extracted from intelligence sources

Frequency
7
occurrences
First Seen
July 6, 2026
Last Seen
July 9, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A critical vulnerability, CVE-2026-11405, has been discovered in multiple Tenda router firmware versions, allowing unauthenticated attackers to gain full administrative control via a hidden backdoor. This flaw exists in the /bin/httpd binary, where the login() function bypasses standard authenticati...

Public Exploits

Checking GitHub for proof-of-concept code…