CVE-2026-4565: Tenda AC21 SetNetControlList formSetQosBand buffer overflow
A vulnerability was detected in Tenda AC21 16.03.08.16. Impacted is the function formSetQosBand of the file /goform/SetNetControlList. Performing a manipulation of the argument list results in buffer overflow. The attack can be initiated remotely. The exploit is now public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-4565?
CVE-2026-4565 has been classified as a high-severity vulnerability due to its potential to cause buffer overflow and execute arbitrary code.
How do I fix CVE-2026-4565?
To mitigate CVE-2026-4565, it is recommended to update the Tenda AC21 router firmware to the latest version that addresses this vulnerability.
What are the potential impacts of CVE-2026-4565?
CVE-2026-4565 can potentially allow attackers to gain unauthorized access or execute malicious code on the affected Tenda AC21 device.
Who is affected by CVE-2026-4565?
CVE-2026-4565 affects Tenda AC21 devices running firmware version 16.03.08.16.
What is the nature of the vulnerability in CVE-2026-4565?
CVE-2026-4565 involves a buffer overflow in the formSetQosBand function, which can be exploited through manipulated argument lists.