CVE-2025-5685: Tenda CH22 Natlimit formNatlimit stack-based overflow
Published Jun 5, 2025
·Updated
A vulnerability, which was classified as critical, was found in Tenda CH22 1.0.0.1. This affects the function formNatlimit of the file /goform/Natlimit. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
3 affected components
Tenda CH22
All of the following
Tenda Ch22 Firmware=1.0.0.1
Tenda CH22
Event History
Jun 5, 2025
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionSeverityWeakness
Jan 12, 57458
Event
via FIRST·09:57 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-5685?
CVE-2025-5685 is classified as a critical vulnerability.
2
How do I fix CVE-2025-5685?
To fix CVE-2025-5685, update the firmware of the Tenda CH22 to the latest version provided by the manufacturer.
3
What type of vulnerability is CVE-2025-5685?
CVE-2025-5685 is a stack-based buffer overflow vulnerability.
4
Can CVE-2025-5685 be exploited remotely?
Yes, CVE-2025-5685 can be exploited remotely.
5
Which software is affected by CVE-2025-5685?
CVE-2025-5685 affects Tenda CH22 with firmware version 1.0.0.1.