CVE-2025-9007: Tenda CH22 editFileName formeditFileName buffer overflow
A vulnerability has been found in Tenda CH22 1.0.0.1. Affected by this issue is the function formeditFileName of the file /goform/editFileName. The manipulation leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9007?
CVE-2025-9007 is classified as a high severity vulnerability due to its potential for remote exploitation and buffer overflow risk.
How do I fix CVE-2025-9007?
To mitigate CVE-2025-9007, it is advised to update the Tenda CH22 firmware to the latest version released by the vendor.
What does CVE-2025-9007 affect?
CVE-2025-9007 affects the Tenda CH22 router running version 1.0.0.1, specifically the formeditFileName function.
Can CVE-2025-9007 be exploited remotely?
Yes, CVE-2025-9007 can be exploited remotely, allowing attackers to potentially execute malicious payloads.
What type of vulnerability is CVE-2025-9007?
CVE-2025-9007 is a buffer overflow vulnerability that can lead to unauthorized access or device compromise.