First published: Sun Apr 27 2025(Updated: )
A vulnerability classified as critical was found in TOTOLINK N150RT 3.4.0-B20190525. Affected by this vulnerability is an unknown functionality of the file /boafrm/formStaticDHCP. The manipulation of the argument Hostname leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink N150RT-V2 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2025-3989 is classified as critical.
CVE-2025-3989 affects TOTOLINK N150RT devices through a buffer overflow vulnerability in the file /boafrm/formStaticDHCP.
Yes, CVE-2025-3989 can be exploited remotely by manipulating the Hostname argument.
Exploiting CVE-2025-3989 could lead to unauthorized access or control over the affected device.
To protect against CVE-2025-3989, it is advised to update the firmware of your TOTOLINK N150RT device to the latest version.