Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow via the deviceId parameter in the get_parentControl_list_Info function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
Metrics
Affected Vendors & Products
References
History
Wed, 05 Nov 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda ax3 Firmware
|
|
| CPEs | cpe:2.3:h:tenda:ax3:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:ax3_firmware:16.03.12.10_cn:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda ax3 Firmware
|
Mon, 03 Nov 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-121 | |
| Metrics |
cvssV3_1
|
Mon, 03 Nov 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda ax3 |
|
| Vendors & Products |
Tenda
Tenda ax3 |
Fri, 31 Oct 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow via the deviceId parameter in the get_parentControl_list_Info function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-10-31T00:00:00.000Z
Updated: 2025-11-03T14:53:20.710Z
Reserved: 2025-10-27T00:00:00.000Z
Link: CVE-2025-63454
Updated: 2025-10-31T19:28:51.616Z
Status : Analyzed
Published: 2025-10-31T19:15:51.047
Modified: 2025-11-05T17:29:08.600
Link: CVE-2025-63454
No data.