A security vulnerability has been detected in Tenda CH22 up to 1.0.0.1. This issue affects the function formWrlsafeset of the file /goform/AdvSetWrlsafeset of the component HTTP Request Handler. The manipulation of the argument mit_ssid_index leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.
Metrics
Affected Vendors & Products
References
History
Wed, 08 Oct 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Tenda
Tenda ch22 |
|
Vendors & Products |
Tenda
Tenda ch22 |
Wed, 08 Oct 2025 00:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A security vulnerability has been detected in Tenda CH22 up to 1.0.0.1. This issue affects the function formWrlsafeset of the file /goform/AdvSetWrlsafeset of the component HTTP Request Handler. The manipulation of the argument mit_ssid_index leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. | |
Title | Tenda CH22 HTTP Request AdvSetWrlsafeset formWrlsafeset stack-based overflow | |
Weaknesses | CWE-119 CWE-121 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-08T00:02:07.614Z
Updated: 2025-10-08T00:02:07.614Z
Reserved: 2025-10-07T11:05:39.796Z
Link: CVE-2025-11418

No data.

Status : Received
Published: 2025-10-08T01:15:31.467
Modified: 2025-10-08T01:15:31.467
Link: CVE-2025-11418

No data.