A vulnerability described as critical has been identified in Tenda CH22 1.0.0.1. This vulnerability affects the function
formexeCommand
of the file /goform/exeCommand. Executing manipulation of the argument cmdinput can lead to buffer overflow.
This vulnerability appears as CVE-2025-9812. The attack may be performed from remote. In addition, an exploit is available.