Security Advisory

CVE-2025-9748

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-08-31 22:02:07
Last updated 2025-09-02 15:12:48
Assigner VulDB
State PUBLISHED

Description

A vulnerability was determined in Tenda CH22 1.0.0.1. Affected by this issue is the function fromIpsecitem of the file /goform/IPSECsave of the component httpd. Executing manipulation of the argument ipsecno can lead to stack-based buffer overflow. The attack may be performed from remote.