PT-2026-4789 · Tenda · Tenda W30E

Kazuma Matsumoto

·

Published

2026-01-26

·

Updated

2026-01-29

·

CVE-2026-24429

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037)
Description The device ships with a predefined default password for a built-in authentication account. This account does not require a password change during initial configuration. An attacker can use these default credentials to access the management interface with authenticated access.
Recommendations Update firmware to a version newer than V16.01.0.19(5037).

Fix

Weakness Enumeration

Related Identifiers

BDU:2026-01036
CVE-2026-24429

Affected Products

Tenda W30E