CVE-2026-5152
HIGH
NVD
CVSS Score
8.8
Severity
HIGH
Published
Mar 30, 2026
Vendor
unknown
Description
A vulnerability was detected in Tenda CH22 1.0.0.1. Impacted is the function formCreateFileName of the file /goform/createFileName. Performing a manipulation of the argument fileNameMit results in stack-based buffer overflow. The attack may be initiated remotely. The exploit is now public and may be used.