A vulnerability classified as critical was found in Tenda CH22 1.0.0.1. This affects the function
fromAdvSetWan of the file /goform/AdvSetWan of the component Parameter Handler. The manipulation of the argument wanmode results in stack-based buffer overflow.
This vulnerability is identified as CVE-2026-5155. The attack can be executed remotely. Additionally, an exploit exists.