CVE-2022-25553: High severity tenda ax1806 firmware vulnerability
Published Mar 9, 2022
·Updated
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsPwd parameter.
Affected Software
2 affected components
Tenda Ax1806 Firmware=1.0.0.1
Tenda AX1806
Event History
Mar 9, 2022
CVE Published
via MITRE·06:27 PM
Data Sourced
via MITRE·06:27 PM
Description
Frequently Asked Questions
1
What is CVE-2022-25553?
CVE-2022-25553 is a vulnerability found in Tenda AX1806 v1.0.0.1 firmware that allows attackers to cause a Denial of Service (DoS) via a stack overflow in the function formSetSysToolDDNS.
2
How severe is CVE-2022-25553?
CVE-2022-25553 has a severity rating of 7.5 (high).
3
How does CVE-2022-25553 affect Tenda AX1806 v1.0.0.1?
CVE-2022-25553 affects Tenda AX1806 v1.0.0.1 by allowing attackers to cause a Denial of Service (DoS) via the ddnsPwd parameter.
4
Is Tenda AX1806 v1.0.0.1 the only affected software?
Yes, Tenda AX1806 v1.0.0.1 firmware is the only affected software.
5
How can I fix CVE-2022-25553?
To fix CVE-2022-25553, it is recommended to upgrade to a patched version of Tenda AX1806 firmware.