CVE-2025-63149: High severity Tenda AX3 vulnerability
Tenda AX3 V16.03.12.10CN was discovered to contain a stack overflow in the urls parameter of the getparentControllistInfo function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-63149?
CVE-2025-63149 is classified as a high severity vulnerability due to its potential to cause a Denial of Service (DoS).
How do I fix CVE-2025-63149?
To fix CVE-2025-63149, update the Tenda AX3 firmware to the latest version provided by the vendor that addresses this vulnerability.
What type of vulnerability is CVE-2025-63149?
CVE-2025-63149 is a stack overflow vulnerability that can be exploited via crafted requests to the affected device.
What devices are affected by CVE-2025-63149?
CVE-2025-63149 specifically affects the Tenda AX3 router running the firmware version V16.03.12.10_CN.
What impact does CVE-2025-63149 have on affected systems?
CVE-2025-63149 can lead to a Denial of Service (DoS), making the device unresponsive to legitimate requests.