Medium severity6.3NVD Advisory· Published Apr 30, 2026· Updated Apr 30, 2026
CVE-2026-7469
CVE-2026-7469
Description
A vulnerability was detected in Tenda 4G300 US_4G300V1.0Mt_V1.01.42_CN_TDC01. This impacts the function sub_425A28 of the file /goform/DelFil. The manipulation of the argument delflag results in command injection. The attack may be launched remotely. The exploit is now public and may be used.
Affected products
1- cpe:2.3:o:tenda:4g300_firmware:1.01.42_cn_tdc01:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- github.com/Axelioc/CVE/blob/main/Tenda/US_4G300/sub_425A28/sub_425A28.mdnvdBroken LinkThird Party Advisory
- vuldb.com/submit/804268nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/360205nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/360205/ctinvdPermissions RequiredVDB Entry
- www.tenda.com.cnnvdProduct
News mentions
0No linked articles in our index yet.