CVE-2025-22900: Critical severity totolink n600r vulnerability
Published Apr 15, 2025
·Updated
Totolink N600R v4.3.0cu.7647B20210106 was discovered to contain a stack overflow via the macCloneMac parameter in the setWanConfig function.
Affected Software
3 affected components
TOTOLINK N600R
All of the following
TOTOLINK N600R firmware=4.3.0cu.7647_b20210106
TOTOLINK N600R
Event History
Apr 15, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-22900?
CVE-2025-22900 has been classified as a high severity vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2025-22900?
To mitigate CVE-2025-22900, it is recommended to apply the latest firmware update provided by Totolink for the N600R.
3
What systems are affected by CVE-2025-22900?
CVE-2025-22900 specifically affects Totolink N600R devices running firmware version 4.3.0cu.7647_B20210106.
4
What type of vulnerability is CVE-2025-22900?
CVE-2025-22900 is categorized as a stack overflow vulnerability impacting the setWanConfig function.
5
Can CVE-2025-22900 lead to data breaches?
Yes, if exploited, CVE-2025-22900 could allow an attacker to execute arbitrary code, potentially leading to data breaches.