CVE-2025-14526High· 8.8▾ TwilightA security flaw has been discovered in Tenda CH22 1.0.0.1. This affects the function frmL7ImForm of the file /goform/L7Im. Performing a manipulation of the argument page results in buffer overflow. Remote exploitation of the attack is po…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 48.4 · likelihood 0.2 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.8%
A security flaw has been discovered in Tenda CH22 1.0.0.1. This affects the function frmL7ImForm of the file /goform/L7Im. Performing a manipulation of the argument page results in buffer overflow. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.
ch22_firmware = 1.0.0.1Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-12234High· 8.8A vulnerability has been found in Tenda CH22 1.0.0.1
CVE-2025-12232High· 8.8A vulnerability was detected in Tenda CH22 1.0.0.1
CVE-2025-9812High· 8.8A vulnerability was determined in Tenda CH22 1.0.0.1
CVE-2025-9813High· 8.8A vulnerability was identified in Tenda CH22 1.0.0.1
CVE-2025-14656High· 8.8A weakness has been identified in Tenda AC20 16.03.08.12
CVE-2025-15218High· 8.8A weakness has been identified in Tenda AC10U 15.03.06.48/15.03.06.49