CVE-2026-15543High· 8.8▾ TwilightA vulnerability was found in Tenda CH22 1.0.0.1. This impacts the function formCertListInfo of the file /goform/CertListInfo. The manipulation of the argument Name results in buffer overflow. The attack can be launched remotely. The expl…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 48.4 · likelihood 0.2 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 13.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.5%
0.5% → 0.9%
A vulnerability was found in Tenda CH22 1.0.0.1. This impacts the function formCertListInfo of the file /goform/CertListInfo. The manipulation of the argument Name results in buffer overflow. The attack can be launched remotely. The exploit has been made public and could be used.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-86166High· 8.8A vulnerability was determined in Tenda HG10 300001138
CVE-2026-86165Critical· 9.8A vulnerability was found in Tenda HG10 300001138
CVE-2026-82542Critical· 10.0A weakness has been identified in Tenda HG10 300001138
CVE-2026-5567High· 8.8A flaw has been found in Tenda M3 1.0.0.10
CVE-2026-65338Medium· 4.3The issue was addressed with improved memory handling
CVE-2026-65334Medium· 4.3A memory corruption issue was addressed with improved state management