CVE-2025-71019

7.5

Tenda · AX-1806

A stack overflow vulnerability in the Tenda AX-1806 router allows unauthenticated remote attackers to trigger a denial of service condition.

Executive summary

A stack-based buffer overflow in the Tenda AX-1806 router, version 1.0.0.1, presents a significant risk of remote denial of service attacks.

Vulnerability

The vulnerability exists within the wanSpeed parameter of the sub_65B5C function, which is susceptible to a stack overflow. This flaw allows an unauthenticated, remote attacker to crash the device by sending a specially crafted network request.

Business impact

Successful exploitation of this vulnerability results in a complete denial of service for the affected networking hardware. Given the CVSS score of 7.5, this high-severity flaw could lead to significant operational disruption if the targeted device serves as a critical gateway or edge component in a production environment.

Remediation

Immediate Action: Since a patch is currently unknown, administrators should restrict network access to the router management interface and disable WAN-side management features to prevent remote exploitation.

Proactive Monitoring: Monitor device uptime and system logs for unexpected reboots or service interruptions that may indicate an attempt to trigger the stack overflow.

Compensating Controls: Implement firewall rules to block unauthorized traffic directed at the router's management ports from untrusted networks.

Exploitation status

Public Exploit Available: Yes, a public proof-of-concept exists as documented in the referenced security researcher write-up.

Analyst recommendation

Given the public availability of technical details and the potential for remote service disruption, this vulnerability requires immediate attention. Network administrators should prioritize isolating affected Tenda AX-1806 units from the public internet and wait for the vendor to release a formal firmware update to address the underlying stack overflow.

More Tenda CVEs

Sources