CNNVD-202602-347 Information

CNNVD ID

CNNVD-202602-347

CVE-2025-67189

  • CNNVD Published: 2026-02-03

Description (Chinese)

TOTOLINK A950RG是中国吉翁电子(TOTOLINK)公司的一款超世代 Giga 无线路由器。 TOTOLINK A950RG V4.1.2cu.5204_B20210112版本存在安全漏洞,该漏洞源于setParentalRules接口对urlKeyword参数验证不足且未执行边界检查,可能导致拒绝服务或执行任意代码。

Description (English)

TOTOLINK A950RG is a multigenerational Giga Wireless router of the Chinese company TOTOLINK. TOTOLINK A950RG V4.1.2cu.5204 B20210112 has a security loophole, which arises from the inadequate verification of the urlKeyword parameters at the setParental Rules interface and the failure to perform border checks, which may result in the denial of services or the execution of arbitrary codes.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

吉翁电子

Published

2026-02-03

Last Modified

2026-02-24

References

https://github.com/SunnyYANGyaya/cuicuishark-sheep-fishIOT/blob/main/ToTolink/A950RG/5024-setParentRules-urlKeyWord-buffer.md

Share on: