First published: Wed Mar 09 2022(Updated: )
Tenda AX1806 v1.0.0.1 was discovered to contain a heap overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the urls parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ax1806 Firmware | =1.0.0.1 | |
Tenda AX1806 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25557 is a vulnerability found in Tenda AX1806 v1.0.0.1 firmware that allows attackers to cause a Denial of Service (DoS) through a heap overflow in the saveParentControlInfo function.
CVE-2022-25557 has a severity rating of 7.5 (high).
CVE-2022-25557 can be exploited by attackers who send malicious input through the urls parameter, triggering a heap overflow and causing a DoS.
The Tenda AX1806 v1.0.0.1 firmware is affected by CVE-2022-25557.
Yes, Tenda AX1806 v1.0.0.1 firmware is the only affected software version. Tenda AX1806 itself is not vulnerable.