A vulnerability was found in Tenda CH22 1.0.0.1. It has been declared as critical. This affects the function
formWrlExtraSet of the file /goform/WrlExtraSet. Executing a manipulation of the argument GO can lead to stack-based buffer overflow.
This vulnerability is handled as CVE-2026-5605. The attack can be executed remotely. Additionally, an exploit exists.