A vulnerability marked as critical has been reported in Tenda CH22 1.0.0.1. Affected by this issue is the function fromVirtualSer of the file /goform/VirtualSer. This manipulation of the argument page causes buffer overflow.

This vulnerability is registered as CVE-2025-12265. Remote exploitation of the attack is possible. Furthermore, an exploit is available.