What is CVE-2026-38708?
CVE-2026-38708 is a command injection vulnerability found in the "system.setclock" interface of various TR and WR series routers (e.g., TR1200, WR300, WR6500). This flaw could allow attackers to execute arbitrary commands on the affected devices. It is recommended to apply the latest firmware updates provided by the manufacturer.
Azərbaycanca: CVE-2026-38708, müxtəlif TR və WR model simsiz routerlərdə (məsələn, TR1200, WR300, WR6500) "system.setclock" interfeysində aşkar edilmiş komanda injection zəifliyidir. Bu boşluq autentifikasiya olunmuş və ya olunmamış hücumçulara cihazda ixtiyari əmrlər icra etməyə imkan verə bilər. İstehsalçı tərəfindən təmin edilən ən son firmware yeniləmələrinin tətbiqi tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-77
FAQ2
Which devices are affected by the CVE-2026-38708 vulnerability?
This vulnerability was found in various TR and WR series routers, such as the TR1200, WR300, and WR6500.
What should be done to protect against the CVE-2026-38708 vulnerability?
It is recommended to apply the latest firmware updates provided by the manufacturer.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.