CVE-2023-29680: Tenda n301 Firmware

Medium severity, CVSS 5.7. EPSS: 0.4% chance of exploitation in the next 30 days.

Cleartext Transmission in set-cookie:ecos_pw: Tenda N301 v6.0, Firmware v12.02.01.61_multi allows an authenticated attacker on the LAN or WLAN to intercept communications with the router and obtain the password.

Affected products

  • Tenda n301 Firmware: version 12.03.01.06_pt only

Published 2023-05-01. Last modified 2026-06-17.