CVE-2026-36738

U-SPEED AC1200 Gigabit Wi-Fi Router (Model: T18-21K) V1.0 is vulnerable to Incorrect Access Control. The device exposes a UART interface that lacks authentication, authorization, or access control mechanisms. An attacker with physical access to the UART pins can connect to the interface and gain unrestricted access to device functionality.
Configurations

No configuration.

History

14 May 2026, 15:16

Type Values Removed Values Added
CWE CWE-284
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.8
References () https://github.com/N0tMilk/vulnerability-research/tree/main/IoT/CVE-2026-36738 - () https://github.com/N0tMilk/vulnerability-research/tree/main/IoT/CVE-2026-36738 -

13 May 2026, 16:27

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-13 16:16

Updated : 2026-05-14 15:16


NVD link : CVE-2026-36738

Mitre link : CVE-2026-36738

CVE.ORG link : CVE-2026-36738


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control