CVE-2025-3993: TOTOLINK N150RT formWsc buffer overflow
A vulnerability was found in TOTOLINK N150RT 3.4.0-B20190525 and classified as critical. This issue affects some unknown processing of the file /boafrm/formWsc. The manipulation of the argument submit-url leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3993?
CVE-2025-3993 is classified as a critical vulnerability due to its potential for remote exploitation.
How do I fix CVE-2025-3993?
To mitigate CVE-2025-3993, users should update their TOTOLINK N150RT firmware to the latest version provided by the vendor.
What type of vulnerability is CVE-2025-3993?
CVE-2025-3993 is a buffer overflow vulnerability that occurs when processing a specific file due to unsafe manipulation of user input.
Can CVE-2025-3993 be exploited remotely?
Yes, the exploitation of CVE-2025-3993 can be initiated remotely, making it particularly dangerous.
What are the potential impacts of CVE-2025-3993?
The exploitation of CVE-2025-3993 may allow an attacker to execute arbitrary code, leading to a complete compromise of the affected device.