CVE-2022-25557: High severity tenda ax1806 firmware vulnerability
Tenda AX1806 v1.0.0.1 was discovered to contain a heap overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the urls parameter.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-25557?
CVE-2022-25557 is a vulnerability found in Tenda AX1806 v1.0.0.1 firmware that allows attackers to cause a Denial of Service (DoS) through a heap overflow in the saveParentControlInfo function.
How severe is CVE-2022-25557?
CVE-2022-25557 has a severity rating of 7.5 (high).
How can CVE-2022-25557 be exploited?
CVE-2022-25557 can be exploited by attackers who send malicious input through the urls parameter, triggering a heap overflow and causing a DoS.
Which software versions are affected by CVE-2022-25557?
The Tenda AX1806 v1.0.0.1 firmware is affected by CVE-2022-25557.
Is Tenda AX1806 v1.0.0.1 the only affected software?
Yes, Tenda AX1806 v1.0.0.1 firmware is the only affected software version. Tenda AX1806 itself is not vulnerable.