CVE-2025-70648: High severity Tenda ax1803 vulnerability
Published Jan 21, 2026
·Updated
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow in the security5g parameter of the sub727F4 function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
Affected Software
3 affected components
Tenda ax1803
All of the following
Tenda Ax1803 Firmware=1.0.0.1
Tenda ax1803
Event History
Jan 21, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-70648?
CVE-2025-70648 has a high severity rating due to its ability to cause Denial of Service.
2
How do I fix CVE-2025-70648?
To fix CVE-2025-70648, update the Tenda AX1803 firmware to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2025-70648?
CVE-2025-70648 affects Tenda AX1803 devices running firmware version 1.0.0.1.
4
What type of attack is possible with CVE-2025-70648?
CVE-2025-70648 allows attackers to execute a remote Denial of Service attack through specially crafted requests.
5
What is the impact of CVE-2025-70648 on device performance?
The impact of CVE-2025-70648 includes potential unavailability of the device due to the Denial of Service condition.