Security Advisory

CVE-2026-78063

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-23 04:30:10
Last updated 2026-08-24 15:13:50
Assigner VulDB
CVSS score 7.4
State PUBLISHED

Description

A security flaw has been discovered in Tenda CH22 1.0.0.1. The impacted element is the function formeditFileName of the file /goform/editFileName. The manipulation of the argument editNameMit results in command injection. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.