CVE-2026-5549 Details
Description
A vulnerability was determined in Tenda AC10 16.03.10.10_multi_TDE01. Affected by this issue is some unknown functionality of the file /webroot_ro/pem/privkeySrv.pem of the component RSA 2048-bit Private Key Handler. Executing a manipulation can lead to use of hard-coded cryptographic key . The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.
A vulnerability exists in the Tenda AC10 V4 router running firmware version 16.03.10.10_multi_TDE01. The issue arises from an unencrypted RSA 2048-bit private key being stored in a web-accessible directory. This key, used by the device's HTTP TLS server, can be accessed remotely without authentication. The exposure of this private key allows for the decryption of HTTPS traffic to and from the device, including admin credentials. The corresponding certificate is self-signed and uses a deprecated SHA-1 signature, further complicating the issue.
It is recommended to move the private key outside of the web root to prevent HTTP access, apply strict file system permissions to restrict access to the key, and replace the self-signed SHA-1 certificate with a SHA-256 certificate.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Apr 6, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/somanyerrors/tenda-ac10v4-vulnerabilities/blob/main/findings/CRITICAL-05-exposed-rsa-private-key.md | [email protected] | Third Party Advisory |
| https://vuldb.com/submit/782298 | [email protected] | Third Party AdvisoryVDB Entry |
| https://vuldb.com/vuln/355313 | [email protected] | Third Party AdvisoryVDB Entry |
| https://vuldb.com/vuln/355313/cti | [email protected] | Permissions RequiredVDB Entry |
| https://www.tenda.com.cn/ | [email protected] | Product |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-320 | Key Management Errors | [email protected] |
| CWE-321 | Use of Hard-coded Cryptographic Key | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| tenda ac10 firmware | 16.03.10.10_multi_tde01 |
CPE
Remediation
| |
| tenda ac10 | 4.0 |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 24, 2026 | CVE Translated | [email protected] |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Apr 29, 2026 | Initial Analysis | [email protected] |
| Apr 5, 2026 | New CVE Received | [email protected] |