Stack Overflow Vulnerability in Tenda AC15 Router
CVE-2022-40860
9.8CRITICAL
What is CVE-2022-40860?
The Tenda AC15 router, specifically version V15.03.05.19, has a stack overflow vulnerability that can be exploited through the function formSetQosBand located at FUN_0007dd20. This vulnerability arises when handling the request for /goform/SetNetControlList, potentially allowing unauthorized users to manipulate device functions and undermine network security.