CVE-2026-19747
CRITICALA weakness has been identified in Tenda CH7, CH7G, CH10, CP3, CP3 Pro, CP7, TC3B14C, TC3B15C, TC3T14C and TC3T15C up to 20260625. This impacts the function CAte::HandleCmd of the file Kylin of the component ATE Module. This manipulation causes command injection. The attack is possible to be carried out remotely.
Published: 8/13/2026Modified: 8/14/2026
References (7)
https://github.com/howitouchyou/Tenda-Smart-Camera-Vulnerability/blob/main/Tenda%20Command%20Injection/Tenda%20Command%20Injection.mdhttps://vuldb.com/cve/CVE-2026-19747https://vuldb.com/submit/868463https://vuldb.com/vuln/389498https://vuldb.com/vuln/389498/ctihttps://www.tenda.com.cn/https://github.com/howitouchyou/Tenda-Smart-Camera-Vulnerability/blob/main/Tenda%20Command%20Injection/Tenda%20Command%20Injection.md