CNNVD-202506-3653 Information

CNNVD ID

CNNVD-202506-3653

CVE-2025-6824

  • CNNVD Published: 2025-06-28

Description (Chinese)

TOTOLINK X15是中国吉翁电子(TOTOLINK)公司的一款网络无线扩展器。 TOTOLINK X15 1.0.0-B20230714.1105及之前版本存在安全漏洞,该漏洞源于文件/boafrm/formParentControl中参数submit-url的错误操作,导致缓冲区溢出。

Description (English)

TOTOLINK X15 is a network wireless extension of the Chinese company TOTOLINK. There is a security loophole in TOOTOLINK X15 1.0.0-B20230714.1105 and earlier versions, which stems from the error of the parameters submit-url in the document/boafrm/formParentControl, resulting in a buffer zone spilling over.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

头歌

Published

2025-06-28

Last Modified

2026-02-24

References

https://vuldb.com/?ctiid.314262 https://www.totolink.net/ https://vuldb.com/?id.314262 https://github.com/awindog/cve/blob/main/688/28.md https://github.com/awindog/cve/blob/main/688/28.md#poc https://vuldb.com/?submit.602643 https://access.redhat.com/security/cve/cve-2025-6824

Share on: