CVE-2025-9748

Publication date

2025-08-31 22:02:07

Family

VulDB

State

PUBLISHED

Description

A vulnerability was determined in Tenda CH22 1.0.0.1. Affected by this issue is the function fromIpsecitem of the file /goform/IPSECsave of the component httpd. Executing manipulation of the argument ipsecno can lead to stack-based buffer overflow. The attack may be performed from remote.