Review reviewCritical
CVE-2026-38064
the affected product
Tenda 5G03 V05.03.02.04 (Version 1.0) is vulnerable to Command injection in the function action_dial_call via the dialNumber parameter.
- CVSS
- 9.8
- EPSS
- 1.05% 60.8% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.16