CVE-2022-25555: High severity tenda ax1806 firmware vulnerability
Published Mar 9, 2022
·Updated
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ntpServer parameter.
Affected Software
2 affected components
Tenda Ax1806 Firmware=1.0.0.1
Tenda AX1806
Event History
Mar 9, 2022
CVE Published
via MITRE·06:27 PM
Data Sourced
via MITRE·06:27 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Tenda AX1806 firmware vulnerability?
The vulnerability ID for this Tenda AX1806 firmware vulnerability is CVE-2022-25555.
2
What is the severity level of CVE-2022-25555?
The severity level of CVE-2022-25555 is high, with a CVSS score of 7.5.
3
What is the impact of CVE-2022-25555?
CVE-2022-25555 allows attackers to cause a Denial of Service (DoS) by exploiting a stack overflow in the Tenda AX1806 firmware's fromSetSysTime function.
4
Which software version of Tenda AX1806 firmware is affected by CVE-2022-25555?
The Tenda AX1806 firmware version 1.0.0.1 is affected by CVE-2022-25555.
5
Is the Tenda AX1806 device itself vulnerable to CVE-2022-25555?
No, the Tenda AX1806 device is not vulnerable to CVE-2022-25555.