Critical severity9.8NVD Advisory· Published Aug 16, 2024· Updated Jun 17, 2026
CVE-2024-42634
CVE-2024-42634
Description
A Command Injection vulnerability exists in formWriteFacMac of the httpd binary in Tenda AC9 v15.03.06.42. As a result, attacker can execute OS commands with root privileges.
Affected products
3- cpe:2.3:o:tenda:ac9_firmware:15.03.06.42:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/goldds96/Report/blob/main/Tenda/AC9/CI.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.