CVE-2025-28021: Buffer Overflow
TOTOLINK A810R V4.1.2cu.5182B20201026 was found to contain a buffer overflow vulnerability in the downloadFile.cgi through the v14 and v3 parameters
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-28021?
CVE-2025-28021 is categorized as a high severity vulnerability due to its potential to allow remote code execution on affected devices.
How do I fix CVE-2025-28021?
To fix CVE-2025-28021, users should update their TOTOLINK A810R firmware to the latest patched version released by the manufacturer.
What causes CVE-2025-28021?
CVE-2025-28021 is caused by a buffer overflow vulnerability in the downloadFile.cgi script when processing the v14 and v3 parameters.
Which devices are affected by CVE-2025-28021?
CVE-2025-28021 affects devices running TOTOLINK A810R firmware version V4.1.2cu.5182_B20201026 and possibly earlier versions.
What is the potential impact of CVE-2025-28021?
The potential impact of CVE-2025-28021 includes unauthorized remote access and execution of arbitrary code on vulnerable devices.