Shenzhen Tenda W30E V2 firmware versions up to and...
Low severity
Unreviewed
Published
Jan 26, 2026
to the GitHub Advisory Database
•
Updated Jan 28, 2026
Description
Published by the National Vulnerability Database
Jan 26, 2026
Published to the GitHub Advisory Database
Jan 26, 2026
Last updated
Jan 28, 2026
Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) fail to include the X-Content-Type-Options: nosniff response header on web management interfaces. As a result, browsers that perform MIME sniffing may incorrectly interpret attacker-influenced responses as executable script.
References