Vulnerability Details CVE-2023-38937
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, AC9 V3.0 V15.03.06.42_multi and AC10 v4.0 V16.03.10.13 were discovered to contain a stack overflow via the list parameter in the formSetVirtualSer function.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 32.4%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-38937
-
-
-
-
-
-
-
-
-
cpe:2.3:o:tenda:ac10_firmware:15.03.06.23
-
cpe:2.3:o:tenda:ac10_firmware:16.03.10.13
-
cpe:2.3:o:tenda:ac1206_firmware:15.03.06.23
-
cpe:2.3:o:tenda:ac5_firmware:15.03.06.28
-
cpe:2.3:o:tenda:ac6_firmware:15.03.06.23
-
cpe:2.3:o:tenda:ac7_firmware:15.03.06.44
-
cpe:2.3:o:tenda:ac8_firmware:16.03.34.06
-
cpe:2.3:o:tenda:ac9_firmware:15.03.06.42_multi