EIP-2026-102039
PRE-CVETenda W309R Router 5.07.46 - Configuration Disclosure
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102039. PoCs published by SANTHO.
AI-analyzed exploit summary This Nmap script exploits an authentication bypass vulnerability in Tenda W309R routers by setting a cookie value to 'admin' to access sensitive configuration details without credentials. It extracts PPPoE credentials, wireless passwords, and MAC addresses from the router's web interface.
Description
Tenda W309R Router 5.07.46 - Configuration Disclosure
Exploits (1)
This Nmap script exploits an authentication bypass vulnerability in Tenda W309R routers by setting a cookie value to 'admin' to access sensitive configuration details without credentials. It extracts PPPoE credentials, wireless passwords, and MAC addresses from the router's web interface.