CNNVD-202509-2041 Information

CNNVD ID

CNNVD-202509-2041

CVE-2025-52053

  • CNNVD Published: 2025-09-15

Description (Chinese)

TOTOLINK X6000R是中国吉翁电子(TOTOLINK)公司的一款无线路由器。 TOTOLINK X6000R V9.4.0cu.1360_B20241207版本存在安全漏洞,该漏洞源于sub_417D74函数中文件名称参数处理不当,可能导致未经验证的攻击者通过特制请求执行任意命令。

Description (English)

TOTOLINK X60000R is a wireless router of the Chinese company TOTOLINK. TOTOLINK X60000R V9.0cu.1360 B20241207 has a security loophole, which stems from the mishandling of the file name parameter in the sub 417D74 function, which may result in unauthorized assailants requesting arbitrary orders by special design.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

吉翁电子

Published

2025-09-15

Last Modified

2026-02-24

References

https://totolink.net https://github.com/w0rkd4tt/Totolink/blob/main/CVE-2025-52053/CVE-2025-52053.md https://access.redhat.com/security/cve/cve-2025-52053

Patch

https://www.totolink.net/home/menu/detail/menu_listtpl/download/id/247/ids/36.html

Share on: