Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x5qw-fmv8-fhx9

Опубликовано: 23 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 2.1
CVSS3: 7.4

Описание

A security flaw has been discovered in Tenda CH22 1.0.0.1. The impacted element is the function formeditFileName of the file /goform/editFileName. The manipulation of the argument editNameMit results in command injection. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.

A security flaw has been discovered in Tenda CH22 1.0.0.1. The impacted element is the function formeditFileName of the file /goform/editFileName. The manipulation of the argument editNameMit results in command injection. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.

EPSS

Процентиль: 63%
0.01067
Низкий

2.1 Low

CVSS4

7.4 High

CVSS3

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 7.4
nvd
29 дней назад

A security flaw has been discovered in Tenda CH22 1.0.0.1. The impacted element is the function formeditFileName of the file /goform/editFileName. The manipulation of the argument editNameMit results in command injection. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.

CVSS3: 7.4
fstec
30 дней назад

Уязвимость функции formeditFileName() микропрограммного обеспечения маршрутизаторов Tenda CH22, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 63%
0.01067
Низкий

2.1 Low

CVSS4

7.4 High

CVSS3

Дефекты

CWE-74