216.73.216.6

CVE-2026-5527

· Published 05/04/2026 00:16 · Modified 05/04/2026 00:16

Labels: CVE-2026-5527 2026-04-05CVE-2026-5527CWE-320[email protected]

Essential information

Published
05/04/2026 00:16
Modified
05/04/2026 00:16
Author
Creator
CVSS
5.5 MEDIUM (v3) 5.5 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A weakness has been identified in Tenda 4G03 Pro 1.0/1.0re/01.bin/04.03.01.53. Affected by this issue is some unknown functionality of the file /etc/www/pem/server.key of the component ECDSA P-256 Private Key Handler. This manipulation causes use of hard-coded cryptographic key . It is possible to initiate the attack remotely.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
tenda / 4g03 pro cpe:2.3:a:tenda:4g03_pro:1.0:*:*:*:*:*:*:*
tenda / 4g03 pro cpe:2.3:a:tenda:4g03_pro:1.0re:*:*:*:*:*:*:*
tenda / 4g03 pro cpe:2.3:a:tenda:4g03_pro:04.03.01.53:*:*:*:*:*:*:*

References