Critical severity9.8NVD Advisory· Published Aug 7, 2023· Updated Jun 17, 2026
CVE-2023-38936
CVE-2023-38936
Description
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, FH1203 V2.0.1.6, AC9 V3.0 V15.03.06.42_multi and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
13- cpe:2.3:o:tenda:ac10_firmware:15.03.06.23:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:ac1206_firmware:15.03.06.23:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:ac6_firmware:15.03.06.23:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:ac7_firmware:15.03.06.44:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:f1203_firmware:2.0.1.6:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:ac5_firmware:15.03.06.28:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:fh1203_firmware:2.0.1.6:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:fh1205_firmware:2.0.0.7\(775\):*:*:*:*:*:*:*
- cpe:2.3:o:tenda:ac9_firmware:15.03.06.42_multi:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/FirmRec/IoT-Vulns/blob/main/tenda/formSetSpeedWan/README.mdnvdExploitVendor Advisory
News mentions
0No linked articles in our index yet.