CyberRota Analysis
AI-GeneratedA critical vulnerability exists in the Tenda CP3, specifically within the CAutoAddWifi::ThreadProc function, allowing for remote command injection due to improper input validation. This flaw could enable attackers to execute arbitrary operating system commands, potentially compromising the device and its network. Organizations using the affected Tenda CP3 model should prioritize immediate patching to mitigate the risk of exploitation.
Original NVD Description
A flaw has been found in Tenda CP3 27.5.57.101. The impacted element is the function CAutoAddWifi::ThreadProc of the file Functions/AutoAddWifi.cpp of the component Kylin. Executing a manipulation can lead to os command injection. The attack may be launched remotely.