CVE-2025-70802: Tenda g1 Firmware

High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.

Tenda G1V3.1si V16.01.7.8 Firmware V16.01.7.8 was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which allows attackers to log in as root.

Affected products

  • Tenda g1 Firmware: version 16.01.7.8 only

Published 2026-03-10. Last modified 2026-06-17.