CVE-2025-71019
7.5Tenda · AX-1806
A stack overflow vulnerability in the Tenda AX-1806 router allows unauthenticated remote attackers to trigger a denial of service condition.
Executive summary
A stack-based buffer overflow in the Tenda AX-1806 router, version 1.0.0.1, presents a significant risk of remote denial of service attacks.
Vulnerability
The vulnerability exists within the wanSpeed parameter of the sub_65B5C function, which is susceptible to a stack overflow. This flaw allows an unauthenticated, remote attacker to crash the device by sending a specially crafted network request.
Business impact
Successful exploitation of this vulnerability results in a complete denial of service for the affected networking hardware. Given the CVSS score of 7.5, this high-severity flaw could lead to significant operational disruption if the targeted device serves as a critical gateway or edge component in a production environment.
Remediation
Immediate Action: Since a patch is currently unknown, administrators should restrict network access to the router management interface and disable WAN-side management features to prevent remote exploitation.
Proactive Monitoring: Monitor device uptime and system logs for unexpected reboots or service interruptions that may indicate an attempt to trigger the stack overflow.
Compensating Controls: Implement firewall rules to block unauthorized traffic directed at the router's management ports from untrusted networks.
Exploitation status
Public Exploit Available: Yes, a public proof-of-concept exists as documented in the referenced security researcher write-up.
Analyst recommendation
Given the public availability of technical details and the potential for remote service disruption, this vulnerability requires immediate attention. Network administrators should prioritize isolating affected Tenda AX-1806 units from the public internet and wait for the vendor to release a formal firmware update to address the underlying stack overflow.