CNNVD-202507-1697 Information

CNNVD ID

CNNVD-202507-1697

CVE-2025-7460

  • CNNVD Published: 2025-07-11

Description (Chinese)

TOTOLINK T6是中国吉翁电子(TOTOLINK)公司的一款无线双频路由器。 TOTOLINK T6 4.1.5cu.748_B20211015版本存在安全漏洞,该漏洞源于对文件/cgi-bin/cstecgi.cgi中参数mac的错误操作导致缓冲区溢出。

Description (English)

TOTOLINK T6 is a wireless dual-frequency router of the Chinese company TOTOLINK. There is a security loophole in TOTOLINK T6 4.1.5cu.748 B20211015, which is the result of an error in the use of paramac in document/cgi-bin/cstecgi.cgi, resulting in a buffer zone spill.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

头歌

Published

2025-07-11

Last Modified

2026-02-24

References

https://github.com/ElvisBlue/Public/blob/main/Vuln/1.md https://github.com/ElvisBlue/Public/blob/main/Vuln/1.md#poc https://vuldb.com/?ctiid.316111 https://vuldb.com/?id.316111 https://vuldb.com/?submit.609819 https://www.totolink.net/ https://access.redhat.com/security/cve/cve-2025-7460

Share on: