Metrics
Affected Vendors & Products
Tue, 14 Oct 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Totolink n600r Firmware
|
|
| CPEs | cpe:2.3:h:totolink:n600r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:n600r_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Totolink n600r Firmware
|
Wed, 08 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 08 Oct 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Totolink
Totolink n600r |
|
| Vendors & Products |
Totolink
Totolink n600r |
Wed, 08 Oct 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in TOTOLINK N600R up to 4.3.0cu.7866_B20220506. This impacts the function setWiFiBasicConfig of the file /cgi-bin/cstecgi.cgi of the component HTTP Request Handler. Such manipulation of the argument wepkey leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used. | |
| Title | TOTOLINK N600R HTTP Request cstecgi.cgi setWiFiBasicConfig buffer overflow | |
| Weaknesses | CWE-119 CWE-120 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-08T08:02:10.203Z
Updated: 2025-10-08T13:15:16.782Z
Reserved: 2025-10-07T13:19:44.162Z
Link: CVE-2025-11444
Updated: 2025-10-08T13:14:45.513Z
Status : Analyzed
Published: 2025-10-08T08:15:32.917
Modified: 2025-10-14T20:16:01.657
Link: CVE-2025-11444
No data.