THREAT OPS › Threat News › [NVD] CVE-2026-86150 (MEDIUM 4.1) — A security vulnerability has been detected in Tenda CP3 27.5.57.101. Impacted is an unknown function of the file custom-x/softap/hostapd. Such manipulation of the argument wpa_passphrase leads to hard-coded credentials. The attack can be launched remotely. The exploit has been di
[NVD] CVE-2026-86150 (MEDIUM 4.1) — A security vulnerability has been detected in Tenda CP3 27.5.57.101. Impacted is an unknown function of the file custom-x/softap/hostapd. Such manipulation of the argument wpa_passphrase leads to hard-coded credentials. The attack can be launched remotely. The exploit has been di
CVE-2026-86150 CVSS: 4.1 MEDIUM Published: 2026-09-05T23:17:41.337
A security vulnerability has been detected in Tenda CP3 27.5.57.101. Impacted is an unknown function of the file custom-x/softap/hostapd. Such manipulation of the argument wpa_passphrase leads to hard-coded credentials. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.
MITRE ATT&CK techniques
- CredentialsT1589.001
Indicators of compromise
- CVE-2026-86150cve
- 27.5.57.101ipv4
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-86150