CVE-2025-28027: Buffer Overflow
TOTOLINK A830R V4.1.2cu.5182B20201102, A950RG V4.1.2cu.5161B20200903, A3000RU V5.9c.5185B20201128, and A3100R V4.1.2cu.5247B20211129 was found to contain a buffer overflow vulnerability in downloadFile.cgi.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-28027?
CVE-2025-28027 is classified as a high severity vulnerability due to the potential for remote code execution from a buffer overflow.
How do I fix CVE-2025-28027?
To mitigate CVE-2025-28027, users should update their TOTOLINK devices to the latest firmware version that addresses the buffer overflow vulnerability.
What devices are affected by CVE-2025-28027?
CVE-2025-28027 affects TOTOLINK A830R, A950RG, A3000RU, and A3100R router models.
Can CVE-2025-28027 be exploited remotely?
Yes, CVE-2025-28027 can be exploited remotely, allowing an attacker to execute arbitrary code on the affected devices.
What does CVE-2025-28027 involve?
CVE-2025-28027 involves a buffer overflow vulnerability specifically found in the downloadFile.cgi script.