CVE-2026-77031 | Tenda CH22 1.0.0.1 formcreateFileName fileNameMit command injection

SecurityVulns

A vulnerability has been found in Tenda CH22 1.0.0.1 and classified as critical. The affected element is the function formcreateFileName of the file /goform/formcreateFileName. The manipulation of the argument fileNameMit leads to command injection.

This vulnerability is documented as CVE-2026-77031. The attack can be initiated remotely. Additionally, an exploit exists.VulDB Recent EntriesRead More