CVE-2025-3996: TOTOLINK N150RT MAC Filtering Page home.htm cross site scripting
A vulnerability was found in TOTOLINK N150RT 3.4.0-B20190525. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /home.htm of the component MAC Filtering Page. The manipulation of the argument Comment leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3996?
CVE-2025-3996 has been rated as problematic.
What component is affected by CVE-2025-3996?
CVE-2025-3996 affects the MAC Filtering Page functionality in the TOTOLINK N150RT router.
What type of vulnerability is CVE-2025-3996?
CVE-2025-3996 is a cross-site scripting (XSS) vulnerability.
How does the exploitation of CVE-2025-3996 occur?
Exploitation of CVE-2025-3996 occurs through manipulation of the Comment argument in the /home.htm file.
How do I protect my device from CVE-2025-3996?
To protect against CVE-2025-3996, users should update to the latest firmware version provided by TOTOLINK.