8.7
/ 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was determined in Tenda CH22 1.0.0.1. This vulnerability affects the function formexeCommand of the file /goform/exeCommand. Executing manipulation of the argument cmdinput can lead to buffer overflow. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
Basic Information
ID
CVE-2025-9812
Source
VulDB
Published
Sep 2, 2025 at 03:02
Affected Product
Vendor
Tenda
Product
CH22
Version
1.0.0.1
Affected Versions
Tenda CH22 1.0.0.1