PatchSiren cyber security CVE debrief
CVE-2020-10987 Tenda CVE debrief
CVE-2020-10987 is a remote code execution vulnerability affecting the Tenda AC1900 Router AC15 Model. CISA lists it in the Known Exploited Vulnerabilities catalog, which means it is known to be exploited in the wild. For defenders, this makes the issue especially important for any environment using this router model, particularly if the device is internet-facing or difficult to monitor.
- Vendor
- Tenda
- Product
- AC1900 Router AC15 Model
- CVSS
- Unknown
- CISA KEV
- Listed
- Original CVE published
- 2021-11-03
- Original CVE updated
- 2021-11-03
- Advisory published
- 2021-11-03
- Advisory updated
- 2021-11-03
Who should care
Organizations and individuals using the Tenda AC1900 Router AC15 Model, especially IT teams responsible for edge networking equipment, home-office routers, branch locations, and any internet-exposed deployments.
Technical summary
The supplied official records identify CVE-2020-10987 as a remote code execution issue affecting the Tenda AC1900 Router AC15 Model. The CISA KEV entry confirms it is a known exploited vulnerability and directs defenders to apply updates per vendor instructions. No additional technical details were provided in the supplied corpus.
Defensive priority
High. CISA’s KEV inclusion indicates active real-world exploitation, so this should be treated as a priority patch or mitigation item for any affected deployment.
Recommended defensive actions
- Identify whether any Tenda AC1900 Router AC15 Model devices are in use.
- Prioritize patching or remediation using vendor instructions referenced by CISA KEV.
- Treat internet-facing or remotely administered devices as urgent.
- If immediate patching is not possible, restrict exposure and access as much as operationally feasible.
- Verify whether the device model appears in asset inventories, remote office equipment, or unmanaged network gear.
- Monitor CISA KEV updates and vendor guidance for this CVE.
Evidence notes
This debrief is based only on the supplied official sources: the CISA Known Exploited Vulnerabilities catalog entry, the CVE record, and the NVD detail link. The supplied timeline shows CVE publication and KEV addition on 2021-11-03. CISA’s metadata identifies the vendor project as Tenda, the product as AC1900 Router AC15 Model, the vulnerability as remote code execution, and the required action as applying updates per vendor instructions.
Official resources
-
CVE-2020-10987 CVE record
CVE.org
-
CVE-2020-10987 NVD detail
NVD
-
CISA Known Exploited Vulnerabilities catalog
CISA - Apply updates per vendor instructions.
-
Source item URL
cisa_kev
CVE-2020-10987 and the corresponding CISA KEV entry are dated 2021-11-03 in the supplied corpus. The KEV record indicates known exploitation and lists the remediation direction as applying updates per vendor instructions.