PatchSiren cyber security CVE debrief
CVE-2020-10987 Tenda CVE debrief
CVE-2020-10987 is a remote code execution vulnerability affecting the Tenda AC1900 Router AC15 Model. CISA lists it in the Known Exploited Vulnerabilities catalog, which means it is known to be exploited in the wild. For defenders, this makes the issue especially important for any environment using this router model, particularly if the device is internet-facing or difficult to monitor.
- Vendor
- Tenda
- Product
- AC1900 Router AC15 Model
- CVSS
- Unknown
- CISA KEV
- Listed
- Original CVE published
- 2021-11-03
- Original CVE updated
- 2021-11-03
- Advisory published
- 2021-11-03
- Advisory updated
- 2021-11-03
Who should care
Organizations and individuals using the Tenda AC1900 Router AC15 Model, especially IT teams responsible for edge networking equipment, home-office routers, branch locations, and any internet-exposed deployments.
Technical summary
The supplied official records identify CVE-2020-10987 as a remote code execution issue affecting the Tenda AC1900 Router AC15 Model. The CISA KEV entry confirms it is a known exploited vulnerability and directs defenders to apply updates per vendor instructions. No additional technical details were provided in the supplied corpus.
Defensive priority
High. CISA’s KEV inclusion indicates active real-world exploitation, so this should be treated as a priority patch or mitigation item for any affected deployment.
Recommended defensive actions
- Identify whether any Tenda AC1900 Router AC15 Model devices are in use.
- Prioritize patching or remediation using vendor instructions referenced by CISA KEV.
- Treat internet-facing or remotely administered devices as urgent.
- If immediate patching is not possible, restrict exposure and access as much as operationally feasible.
- Verify whether the device model appears in asset inventories, remote office equipment, or unmanaged network gear.
- Monitor CISA KEV updates and vendor guidance for this CVE.
Evidence notes
This debrief is based only on the supplied official sources: the CISA Known Exploited Vulnerabilities catalog entry, the CVE record, and the NVD detail link. The supplied timeline shows CVE publication and KEV addition on 2021-11-03. CISA’s metadata identifies the vendor project as Tenda, the product as AC1900 Router AC15 Model, the vulnerability as remote code execution, and the required action as applying updates per vendor instructions.
Sources and references
Verified primary and authoritative sources
-
CVE-2020-10987 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2020-10987
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2020-10987 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2020-10987
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
-
CISA Known Exploited Vulnerabilities catalog
Publisher, destination, and source semantics verified
URL: https://www.cisa.gov/known-exploited-vulnerabilities-catalog
Cybersecurity and Infrastructure Security Agency - Official CISA catalog of vulnerabilities known to be exploited in the wild.
Supplemental references
-
Source item URL
Unverified legacy reference
URL: https://www.cisa.gov/sites/default/files/feeds/known_exploited_vulnerabilities.json
cisa_kev
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.