Tenda · Tenda Ch22 · CVE-2025-9812
**Name of the Vulnerable Software and Affected Versions**
Tenda CH22 version 1.0.0.1
**Description**
A buffer overflow issue exists in the `formexeCommand` function of the `/goform/exeCommand` file. Manipulation of the `cmdinput` argument can lead to a buffer overflow, potentially allowing for remote exploitation. The exploit has been publicly disclosed.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.