Tenda AX-1806 Stack Overflow Vulnerability Leading to Denial-of-Service

Vulnerability

A stack overflow vulnerability has been identified in the Tenda AX-1806 router, specifically in version 1.0.0.1. The issue arises in the 'sub_65A28' function, where the 'serverName' parameter is processed. The vulnerability allows attackers to cause a denial-of-service by sending a crafted request that exploits the lack of bounds checking in the 'strcpy' function. This oversight enables the 'serverName' value to overflow a fixed-size stack buffer, corrupting adjacent memory and crashing the device.

Impact

Exploitation of this vulnerability causes the router to crash, disrupting its normal service and availability.

Reproduction

The vulnerability can be reproduced by sending a POST request to the '/goform/AdvSetMacMtuWan' endpoint with a 'serverName' parameter containing an excessively long string, such as 7000 characters. This can be done using a script that automates the request, such as one written in Python using the 'requests' library.

Added: Jan 14, 2026, 6:25 PM
Updated: Jan 14, 2026, 8:20 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
2.5
exploitability
8.7
remediation
0.0
relevance
2.0
threat
6.4
urgency
2.9
incentive
8.3

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.