A vulnerability classified as critical has been found in Tenda CH22 1.0.0.1. This issue affects the function
formSetSambaConf
of the file /goform/SetSambaConf. The manipulation of the argument samba_userNameSda leads to buffer overflow.
This vulnerability is traded as CVE-2025-9813. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.