CNNVD-202511-1910 Information

CNNVD ID

CNNVD-202511-1910

CVE-2025-13288

  • CNNVD Published: 2025-11-17

Description (Chinese)

Tenda CH22是中国腾达(Tenda)公司的一款网络设备。 Tenda CH22 1.0.0.1版本存在安全漏洞,该漏洞源于文件/goform/PPTPUserSetting中参数delno存在缓冲区溢出,可能导致执行任意代码。

Description (English)

Tenda CH22 is a network facility of Tenda China. There is a security loophole in the version of Tenda CH22 1.0.0.1, which stems from the presence of a buffer zone in the document/goform/PPTPUserSetting, the parameter delno, which may lead to the implementation of any code.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

腾达

Published

2025-11-17

Last Modified

2026-02-24

References

https://vuldb.com/?submit.691594 https://github.com/yyyy1g/CVE/issues/1 https://vuldb.com/?id.332628 https://www.tenda.com.cn/ https://vuldb.com/?ctiid.332628 https://access.redhat.com/security/cve/cve-2025-13288

Share on: