A default credentials vulnerability in Tenda W18E V16.01.0.8(1625) allows unauthenticated remote attackers to access the web management portal using the default rzadmin account with administrative privileges.
- https://reddassolutions.com/blog/tenda_w18e_security_research
No PoCs found on GitHub currently.