A vulnerability was detected in Tenda G103 1.0.0.5. The...
Moderate severity
Unreviewed
Published
Apr 2, 2026
to the GitHub Advisory Database
•
Updated Apr 2, 2026
Description
Published by the National Vulnerability Database
Apr 2, 2026
Published to the GitHub Advisory Database
Apr 2, 2026
Last updated
Apr 2, 2026
A vulnerability was detected in Tenda G103 1.0.0.5. The impacted element is the function action_set_net_settings of the file gpon.lua of the component Setting Handler. Performing a manipulation of the argument authLoid/authLoidPassword/authPassword/authSerialNo/authType/oltType/usVlanId/usVlanPriority results in command injection. It is possible to initiate the attack remotely. The exploit is now public and may be used.
References