Unrated severityNVD Advisory· Published Feb 23, 2026· Updated Mar 5, 2026
Tenda F3 CSRF in Web Management Interface
CVE-2026-27513
Description
Shenzhen Tenda F3 Wireless Router firmware V12.01.01.55_multi contains a cross-site request forgery (CSRF) vulnerability in the web-based administrative interface. The interface does not implement anti-CSRF protections, allowing an attacker to induce an authenticated administrator to submit state-changing requests, which can result in unauthorized configuration changes.
Affected products
2- Range: = V12.01.01.55_multi
- Shenzhen Tenda Technology Co., Ltd./Tenda F3v5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.vulncheck.com/advisories/tenda-f3-csrf-in-web-management-interfacemitrethird-party-advisory
- www.tendacn.com/product/F3mitreproduct
News mentions
0No linked articles in our index yet.