CVE 8.7 HIGH

Tenda CH22 DhcpListClient fromDhcpListClient buffer overflow_CVE-2025-12236

8.7 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P

Description

A vulnerability was determined in Tenda CH22 1.0.0.1. This issue affects the function fromDhcpListClient of the file /goform/DhcpListClient. This manipulation of the argument page causes buffer overflow. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.

AI Analysis

Buffer overflow vulnerability in Tenda CH22 1.0.0.1 due to improper handling of the page argument in the fromDhcpListClient function, allowing remote exploitation.

Basic Information

ID CVE-2025-12236
Source VulDB
Published Oct 27, 2025 at 06:22

Affected Product

Vendor Tenda
Product CH22
Version 1.0.0.1
Affected Versions Tenda CH22 1.0.0.1

CWE Classification

AI Assessment

AI Score 8.7 / 10
AI Severity High
Vendor Tenda
Product CH22
Version 1.0.0.1

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.