Critical severity9.8NVD Advisory· Published Aug 7, 2023· Updated Jun 17, 2026
CVE-2023-38935
CVE-2023-38935
Description
Tenda AC1206 V15.03.06.23, AC8 V4 V16.03.34.06, AC5 V1.0 V15.03.06.28, AC10 v4.0 V16.03.10.13 and AC9 V3.0 V15.03.06.42_multi were discovered to contain a tack overflow via the list parameter in the formSetQosBand function.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- cpe:2.3:o:tenda:ac1206_firmware:15.03.06.23:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:ac5_firmware:15.03.06.28:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:ac9_firmware:15.03.06.42_multi:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:ac8_firmware:16.03.34.06:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:ac10_firmware:16.03.10.13:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/FirmRec/IoT-Vulns/blob/main/tenda/formSetQosBand/README.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.