Description
A weakness has been identified in Tenda CH22 1.0.0.1. Impacted is an unknown function of the file /public/. Executing manipulation can lead to path traversal. The attack can be launched remotely. The exploit has been made available to the public and could be exploited.
Problem types
Product status
Timeline
| 2025-12-24: | Advisory disclosed |
| 2025-12-24: | VulDB entry created |
| 2025-12-24: | VulDB entry last update |
Credits
jiefengliang (VulDB User)
References
vuldb.com/?id.338333 (VDB-338333 | Tenda CH22 public path traversal)
vuldb.com/?ctiid.338333 (VDB-338333 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.721411 (Submit #721411 | Tenda CH22 V1.0.0.1 Authentication Bypass Issues)
github.com/...erability in R7WebsSecurityHandler function.md
www.tenda.com.cn/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.