PT-2026-26631 · Ax53 · Ax53

·

CVE-2025-15608

·

Published

2026-03-20

·

Updated

2026-08-12

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AX53 version 1 AX55 version 4 AX55 version 4.6
Description Insufficient input sanitization in the probe handling logic allows unvalidated parameters to trigger a stack-based buffer overflow. This condition can cause the affected service to crash or, under specific circumstances, enable remote code execution via heap-spray techniques, which involves filling the heap memory with a specific sequence of bytes to facilitate the execution of arbitrary code. Successful exploitation may lead to repeated service unavailability or allow an attacker to gain full control of the device.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-15608

Affected Products

Ax53