CVE-2022-25561: High severity tenda ax12 firmware vulnerability
Published Mar 9, 2022
·Updated
Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub42DE00. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
Affected Software
2 affected components
Tenda Ax12 Firmware=22.03.01.21
Tenda AX12
Event History
Mar 9, 2022
CVE Published
via MITRE·06:27 PM
Data Sourced
via MITRE·06:27 PM
Description
Frequently Asked Questions
1
What is CVE-2022-25561?
CVE-2022-25561 is a vulnerability found in Tenda AX12 v22.03.01.21 firmware that allows attackers to cause a Denial of Service (DoS) via a stack overflow in the function sub_42DE00.
2
How severe is CVE-2022-25561?
CVE-2022-25561 has a severity rating of high with a CVSS score of 7.5.
3
Which software versions are affected by CVE-2022-25561?
Tenda AX12 v22.03.01.21 firmware is affected by CVE-2022-25561.
4
How can CVE-2022-25561 be exploited?
CVE-2022-25561 can be exploited by attackers to cause a Denial of Service (DoS) by sending a malicious list parameter.
5
Is Tenda AX12 v22.03.01.21 firmware vulnerable to CVE-2022-25561?
Yes, Tenda AX12 v22.03.01.21 firmware is vulnerable to CVE-2022-25561.