A security vulnerability has been detected in TOTOLINK N600R up to 4.3.0cu.7866_B20220506. This impacts the function setWiFiBasicConfig of the file /cgi-bin/cstecgi.cgi of the component HTTP Request Handler. Such manipulation of the argument wepkey leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.
Metrics
Affected Vendors & Products
References
History
Wed, 08 Oct 2025 08:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A security vulnerability has been detected in TOTOLINK N600R up to 4.3.0cu.7866_B20220506. This impacts the function setWiFiBasicConfig of the file /cgi-bin/cstecgi.cgi of the component HTTP Request Handler. Such manipulation of the argument wepkey leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used. | |
Title | TOTOLINK N600R HTTP Request cstecgi.cgi setWiFiBasicConfig buffer overflow | |
Weaknesses | CWE-119 CWE-120 |
|
References |
|
|
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-10-08T08:02:10.203Z
Reserved: 2025-10-07T13:19:44.162Z
Link: CVE-2025-11444

No data.

Status : Received
Published: 2025-10-08T08:15:32.917
Modified: 2025-10-08T08:15:32.917
Link: CVE-2025-11444

No data.

No data.