First published: Mon Mar 03 2025(Updated: )
A vulnerability has been found in Totolink EX1800T 9.1.0cu.2112_B20220316 and classified as critical. This vulnerability affects the function loginAuth of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument password leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink EX1800T |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-1852 is classified as a critical severity vulnerability.
CVE-2025-1852 affects the loginAuth function in the /cgi-bin/cstecgi.cgi file, leading to a buffer overflow condition.
An attacker can leverage CVE-2025-1852 by manipulating the password argument to exploit the buffer overflow.
To resolve CVE-2025-1852, users should update their Totolink EX1800T firmware to the latest version that has addressed this vulnerability.
CVE-2025-1852 affects the Totolink EX1800T version 9.1.0cu.2112_B20220316.