Stack Overflow Vulnerability in Tenda AX-3 Router
CVE-2025-63454
7.5HIGH
What is CVE-2025-63454?
The Tenda AX-3 router, specifically the version v16.03.12.10_CN, has a vulnerability that stems from a stack overflow in the get_parentControl_list_Info function. This flaw can be exploited by attackers sending specially crafted requests that manipulate the deviceId parameter, leading to a potential Denial of Service (DoS) condition. It highlights the importance of secure coding practices and regular firmware updates to mitigate potential risks.