PT-2026-26631 · Ax53 · Ax53

Samuzora

·

Published

2026-03-20

·

Updated

2026-03-22

·

CVE-2025-15608

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AX53 version 1
Description The issue stems from inadequate input validation within the device’s probe handling logic. Unvalidated parameters can lead to a stack-based buffer overflow, causing the service to crash. Under certain circumstances, this could allow for remote code execution through complex heap-spray techniques. Successful exploitation may lead to service unavailability and potentially allow an attacker to gain control of the device. The vulnerable component processes parameters without proper sanitization.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-15608

Affected Products

Ax53