CVE-2026-15543: Tenda CH22 CertListInfo formCertListInfo buffer overflow
A vulnerability was found in Tenda CH22 1.0.0.1. This impacts the function formCertListInfo of the file /goform/CertListInfo. The manipulation of the argument Name results in buffer overflow. The attack can be launched remotely. The exploit has been made public and could be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-15543?
CVE-2026-15543 has a severity rating of high, with a score of 8.8.
How do I fix CVE-2026-15543?
To mitigate CVE-2026-15543, update the Tenda CH22 device to the latest firmware version provided by the vendor.
What type of vulnerability is CVE-2026-15543?
CVE-2026-15543 is a buffer overflow vulnerability affecting the formCertListInfo function in Tenda CH22.
Can CVE-2026-15543 be exploited remotely?
Yes, CVE-2026-15543 can be exploited remotely, allowing attackers to manipulate the vulnerable argument.
What impact does CVE-2026-15543 have on the system?
The impact of CVE-2026-15543 includes potential remote code execution due to the buffer overflow condition.