CVE 8.7 HIGH

Tenda CH22 WrlExtraGet formWrlExtraGet buffer overflow_CVE-2025-13400

8.7 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P

Description

A vulnerability was detected in Tenda CH22 1.0.0.1. Affected is the function formWrlExtraGet of the file /goform/WrlExtraGet. Performing manipulation of the argument chkHz results in buffer overflow. Remote exploitation of the attack is possible. The exploit is now public and may be used.

AI Analysis

Buffer overflow vulnerability in Tenda CH22 1.0.0.1 via manipulation of the chkHz argument in the formWrlExtraGet function

Basic Information

ID CVE-2025-13400
Source VulDB
Published Nov 19, 2025 at 17:02
Modified Nov 19, 2025 at 21:08

Affected Product

Vendor Tenda
Product CH22
Version 1.0.0.1
Affected Versions Tenda CH22 1.0.0.1

CWE Classification

AI Assessment

AI Score 8.7 / 10
AI Severity High
Vendor Tenda
Product CH22
Version 1.0.0.1

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.