PT-2026-26631 · Ax53 · Ax53
Samuzora
·
Published
2026-03-20
·
Updated
2026-03-22
·
CVE-2025-15608
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
AX53 version 1
Description
The issue stems from inadequate input validation within the device’s probe handling logic. Unvalidated parameters can lead to a stack-based buffer overflow, causing the service to crash. Under certain circumstances, this could allow for remote code execution through complex heap-spray techniques. Successful exploitation may lead to service unavailability and potentially allow an attacker to gain control of the device. The vulnerable component processes parameters without proper sanitization.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ax53