CVE-2023-38935 | Tenda AC5/AC8/AC9/AC10/AC1206 Parameter formSetQosBand list stack-based overflow (EUVD-2023-42695)
A vulnerability was found in Tenda AC5, AC8, AC9, AC10 and AC1206. It has been rated as critical. This vulnerability affects the function formSetQosBand of the component Parameter Handler. The manipulation of the argument list leads to stack-based buffer overflow.
This vulnerability is uniquely identified as CVE-2023-38935. The attack can only be initiated within the local network. No exploit exists.