Unrated severityNVD Advisory· Published Oct 27, 2025· Updated Feb 24, 2026
Tenda CH22 DhcpListClient fromDhcpListClient buffer overflow
CVE-2025-12236
Description
A vulnerability was determined in Tenda CH22 1.0.0.1. This issue affects the function fromDhcpListClient of the file /goform/DhcpListClient. This manipulation of the argument page causes buffer overflow. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- github.com/QIU-DIE/CVE/issues/17mitrebroken-linkexploitissue-tracking
- vuldb.commitrethird-party-advisory
- vuldb.commitrethird-party-advisory
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
- www.tenda.com.cnmitreproduct
News mentions
0No linked articles in our index yet.