CVE-2025-70651

7.5

Tenda · AX-1803

A stack overflow vulnerability in the ssid parameter of the Tenda AX-1803 router allows unauthenticated remote attackers to trigger a Denial of Service.

Executive summary

A stack overflow vulnerability in the Tenda AX-1803 router enables remote unauthenticated attackers to crash the device, resulting in a complete Denial of Service.

Vulnerability

This is a stack-based buffer overflow occurring within the ssid parameter of the form_fast_setting_wifi_set function. The vulnerability is exploitable by unauthenticated attackers via a crafted network request.

Business impact

The exploitation of this vulnerability results in a Denial of Service, which effectively takes the affected network device offline. With a CVSS score of 7.5, the risk is considered High because it allows an external attacker to disrupt business operations without requiring any prior authentication or local access.

Remediation

Immediate Action: Since no official patch is currently available, administrators should restrict management interface access to trusted IP addresses only and disable remote management features.

Proactive Monitoring: Monitor device logs for unusual traffic patterns or frequent service restarts that may indicate attempted exploitation of the wireless configuration interface.

Compensating Controls: Deploy a network-level firewall or intrusion prevention system to filter malformed packets targeting the router's web management interface.

Exploitation status

Public Exploit Available: Yes, a published proof-of-concept exists as documented in the technical write-up referenced by the CVE record.

Analyst recommendation

Given the availability of a public proof-of-concept and the ease of exploitation, Tenda AX-1803 users must prioritize isolating the management interface from the public internet. Organizations should monitor vendor channels for firmware releases and apply patches immediately upon availability to remediate the underlying buffer overflow.

More Tenda CVEs

Sources