CVE-2022-25546: High severity tenda ax1806 firmware vulnerability
Published Mar 9, 2022
·Updated
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsUser parameter.
Affected Software
2 affected components
Tenda Ax1806 Firmware=1.0.0.1
Tenda AX1806
Event History
Mar 9, 2022
CVE Published
via MITRE·06:27 PM
Data Sourced
via MITRE·06:27 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Tenda AX1806 firmware vulnerability?
The vulnerability ID for this Tenda AX1806 firmware vulnerability is CVE-2022-25546.
2
What is the severity level of CVE-2022-25546?
The severity level of CVE-2022-25546 is high, with a CVSS score of 7.5.
3
How does CVE-2022-25546 impact Tenda AX1806 v1.0.0.1?
CVE-2022-25546 allows attackers to cause a Denial of Service (DoS) on Tenda AX1806 v1.0.0.1 through a stack overflow in the function formSetSysToolDDNS.
4
Are all versions of Tenda AX1806 firmware affected by CVE-2022-25546?
No, only version 1.0.0.1 of Tenda AX1806 firmware is affected by CVE-2022-25546.
5
How can I fix CVE-2022-25546 on my Tenda AX1806 v1.0.0.1?
To fix CVE-2022-25546 on Tenda AX1806 v1.0.0.1, it is recommended to update the firmware to a patched version provided by Tenda.