CVE-2025-70744
7.5Tenda · AX-1806
Tenda AX-1806 version 1.0.0.1 contains a stack overflow vulnerability in the cloneType parameter, which can be exploited by an unauthenticated attacker to trigger a Denial of Service.
Executive summary
A stack overflow vulnerability in Tenda AX-1806 version 1.0.0.1 allows remote, unauthenticated attackers to cause a device crash via a crafted request.
Vulnerability
The device is susceptible to a stack overflow within the sub_65B5C function, triggered specifically by the cloneType parameter. This flaw allows an unauthenticated remote attacker to disrupt device availability by sending a crafted request.
Business impact
The vulnerability carries a CVSS score of 7.5, indicating a high risk of service disruption. Successful exploitation results in a Denial of Service, which can render the networking hardware unresponsive and cause significant downtime for dependent business operations. Since the attack vector is network-based and requires no authentication, the potential for widespread disruption is elevated.
Remediation
Immediate Action: As no official patch is currently identified, administrators should restrict network access to the management interface of the AX-1806 to trusted IP addresses only.
Proactive Monitoring: Monitor device logs for abnormal traffic patterns or unexpected service restarts that may indicate an exploitation attempt.
Compensating Controls: Deploy a perimeter firewall or intrusion prevention system to filter and drop traffic containing malformed data packets targeted at the vulnerable parameter.
Exploitation status
Public Exploit Available: Yes — a public proof-of-concept exists as documented in the technical write-up provided by the researcher.
Analyst recommendation
Given the lack of a verified vendor patch and the availability of public technical details regarding the exploit, organizations should prioritize isolating affected units from public-facing network segments. Apply strict access control lists to the management interfaces and verify device configurations to minimize the attack surface until a firmware update is released.