CVE-2025-70744: High severity Tenda AX-1806 vulnerability
Published Jan 15, 2026
·Updated
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the cloneType parameter of the sub65B5C function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
Affected Software
3 affected components
Tenda AX-1806
All of the following
Tenda Ax1806 Firmware=1.0.0.1
Tenda AX1806
Event History
Jan 15, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-70744?
CVE-2025-70744 is classified as a Denial of Service (DoS) vulnerability.
2
How do I fix CVE-2025-70744?
To mitigate CVE-2025-70744, update the Tenda AX-1806 device to the latest firmware version provided by the manufacturer.
3
What impact does CVE-2025-70744 have on my device?
CVE-2025-70744 can cause a Denial of Service, making the device unresponsive to legitimate requests.
4
What systems are affected by CVE-2025-70744?
CVE-2025-70744 specifically affects the Tenda AX-1806 router.
5
Can CVE-2025-70744 be exploited remotely?
Yes, CVE-2025-70744 can be exploited remotely through a crafted request sent to the vulnerable device.