VYPR
Medium severity5.0NVD Advisory· Published Jun 8, 2026

CVE-2026-11493

CVE-2026-11493

Description

Tenda AC15 devices running firmware 15.03.05.19 are vulnerable to weak password requirements due to a Samba configuration issue, allowing local network attackers to potentially exploit the flaw.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Tenda AC15 devices running firmware 15.03.05.19 are vulnerable to weak password requirements due to a Samba configuration issue, allowing local network attackers to potentially exploit the flaw.

Vulnerability

A weakness exists in Tenda AC15 devices with firmware version 15.03.05.19, specifically within the Samba configuration file /etc_ro/smb.conf. This vulnerability allows for weak password requirements to be enforced.

Exploitation

An attacker on the local network can exploit this vulnerability. The attack requires a high level of complexity and is considered difficult to execute. Publicly available exploits could be used for attacks.

Impact

Successful exploitation of this vulnerability can lead to weak password requirements, potentially allowing unauthorized access or further compromise of the device within the local network.

Mitigation

No specific mitigation or patched version information is available in the provided references. Users are advised to consult Tenda's official website for any future updates or advisories [1].

AI Insight generated on Jun 8, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.