CVE-2025-15076

🟡 Monitoruj

Wykorzystanie luki w Tenda CH22 umożliwia zdalne przeprowadzenie ataku typu path traversal.

CVSS
7.3
EPSS
0.7%
Exploit
poc
Vendor
tenda
Opis źródłowy (NVD)

A weakness has been identified in Tenda CH22 1.0.0.1. Impacted is an unknown function of the file /public/. Executing a manipulation can lead to path traversal. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.

exploit path-traversal Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS7.3
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.7%
Opublikowano (NVD)2025-12-25 04:15:43 UTC
Ostatnia modyfikacja (NVD)2026-10-07 13:10:00 UTC
Referencje