CH22
Tenda- Software type
- —
- Catalog vulnerabilities
- 39
Severity across 39 analyzed records
Verify to analyze this security profile
A short verification protects source data and prevents automated AI requests.
en
Severity across 39 analyzed records
A short verification protects source data and prevents automated AI requests.
The GCVE catalog currently lists 39 vulnerability records affecting CH22.
Among the 39 records analyzed by CyStack, 32 are High or Critical and 0 appear in the CISA KEV catalog.
Compare the version you run with each vulnerability and the provider guidance below. The data only includes records analyzed so far.
| CVE | Exploitation status | Fix | Published | Severity |
|---|---|---|---|---|
CVE-2026-78141Tenda CH22 exeCommand formexeCommand command injection | Exploitation statusPublic exploit | FixNot confirmed | Published08/23/2026 | SeverityMedium |
CVE-2026-78063Tenda CH22 editFileName formeditFileName command injection | Exploitation statusPublic exploit | FixNot confirmed | Published08/23/2026 | SeverityMedium |
CVE-2026-77031Tenda CH22 formcreateFileName command injection | Exploitation statusPublic exploit | FixNot confirmed | Published08/20/2026 | SeverityMedium |
CVE-2026-19346Tenda CH22 CertListInfo formCertListInfo command injection | Exploitation statusPublic exploit | FixNot confirmed | Published08/09/2026 | SeverityHigh |
CVE-2026-15543Tenda CH22 CertListInfo formCertListInfo buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published07/13/2026 | SeverityHigh |
CVE-2026-5962Tenda CH22 httpd R7WebsSecurityHandlerfunction path traversal | Exploitation statusPublic exploit | FixNot confirmed | Published04/09/2026 | SeverityMedium |
CVE-2026-5156Tenda CH22 Parameter QuickIndex formQuickIndex stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/30/2026 | SeverityHigh |
CVE-2026-5155Tenda CH22 Parameter AdvSetWan fromAdvSetWan stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/30/2026 | SeverityHigh |
CVE-2026-5154Tenda CH22 Parameter setcfm fromSetCfm stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/30/2026 | SeverityHigh |
CVE-2026-5153Tenda CH22 WriteFacMac FormWriteFacMac command injection | Exploitation statusPublic exploit | FixNot confirmed | Published03/30/2026 | SeverityMedium |
CVE-2026-5152Tenda CH22 createFileName formCreateFileName stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/30/2026 | SeverityHigh |
CVE-2025-15229Tenda CH22 DhcpListClient fromDhcpListClient denial of service | Exploitation statusPublic exploit | FixNot confirmed | Published12/30/2025 | SeverityMedium |
CVE-2025-15076Tenda CH22 public path traversal | Exploitation statusPublic exploit | FixNot confirmed | Published12/25/2025 | SeverityMedium |
CVE-2025-14526Tenda CH22 L7Im frmL7ImForm buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published12/11/2025 | SeverityHigh |
CVE-2025-13400Tenda CH22 WrlExtraGet formWrlExtraGet buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published11/19/2025 | SeverityHigh |
CVE-2025-13288Tenda CH22 PPTPUserSetting fromPptpUserSetting buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published11/17/2025 | SeverityHigh |
CVE-2025-12322Tenda CH22 NatStaticSetting fromNatStaticSetting buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/27/2025 | SeverityHigh |
CVE-2025-12274Tenda CH22 P2pListFilter fromP2pListFilter buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/27/2025 | SeverityHigh |
CVE-2025-12273Tenda CH22 webExcptypemanFilter fromwebExcptypemanFilter buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/27/2025 | SeverityHigh |
CVE-2025-12272Tenda CH22 addressNat fromAddressNat buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/27/2025 | SeverityHigh |
CVE-2025-12271Tenda CH22 RouteStatic fromRouteStatic buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/27/2025 | SeverityHigh |
CVE-2025-12265Tenda CH22 VirtualSer fromVirtualSer buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/27/2025 | SeverityHigh |
CVE-2025-12236Tenda CH22 DhcpListClient fromDhcpListClient buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/27/2025 | SeverityHigh |
CVE-2025-12235Tenda CH22 SetIpBind fromSetIpBind buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/27/2025 | SeverityHigh |
CVE-2025-12234Tenda CH22 SafeMacFilter fromSafeMacFilter buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/27/2025 | SeverityHigh |
CVE-2025-12233Tenda CH22 SafeUrlFilter fromSafeUrlFilter buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/27/2025 | SeverityHigh |
CVE-2025-12232Tenda CH22 SafeClientFilter fromSafeClientFilter buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/27/2025 | SeverityHigh |
CVE-2025-11423Tenda CH22 SafeEmailFilter formSafeEmailFilter memory corruption | Exploitation statusPublic exploit | FixNot confirmed | Published10/08/2025 | SeverityCritical |
CVE-2025-11418Tenda CH22 HTTP Request AdvSetWrlsafeset formWrlsafeset stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/08/2025 | SeverityCritical |
CVE-2025-11117Tenda CH22 GstDhcpSetSer formWrlExtraGet buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published09/28/2025 | SeverityHigh |
CVE-2025-9813Tenda CH22 SetSambaConf formSetSambaConf buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published09/02/2025 | SeverityHigh |
CVE-2025-9812Tenda CH22 exeCommand formexeCommand buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published09/02/2025 | SeverityHigh |
CVE-2025-9748Tenda CH22 httpd IPSECsave fromIpsecitem stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published08/31/2025 | SeverityHigh |
CVE-2025-9443Tenda CH22 editUserName formeditUserName buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published08/26/2025 | SeverityHigh |
CVE-2025-9007Tenda CH22 editFileName formeditFileName buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published08/15/2025 | SeverityHigh |
CVE-2025-9006Tenda CH22 delFileName formdelFileName buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published08/15/2025 | SeverityHigh |
CVE-2025-8180Tenda CH22 deleteUserName formdeleteUserName buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published07/26/2025 | SeverityHigh |
CVE-2025-5685Tenda CH22 Natlimit formNatlimit stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published06/05/2025 | SeverityHigh |
CVE-2025-5619Tenda CH22 addUserName formaddUserName stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published06/04/2025 | SeverityHigh |
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScan