VYPR
High severity8.8NVD Advisory· Published Nov 17, 2025· Updated Jun 17, 2026

CVE-2025-13288

CVE-2025-13288

Description

A security vulnerability has been detected in Tenda CH22 1.0.0.1. This impacts the function fromPptpUserSetting of the file /goform/PPTPUserSetting. The manipulation of the argument delno leads to buffer overflow. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Tenda/Ch22 Firmwarev52 versions
    cpe:2.3:o:tenda:ch22_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:tenda:ch22_firmware:*:*:*:*:*:*:*:*range: 1.0.0.1
    • cpe:2.3:o:tenda:ch22_firmware:1.0.0.1:*:*:*:*:*:*:*
  • Tenda/CH22llm-fuzzy
    Range: =1.0.0.1

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.