CVE-2025-4460: TOTOLINK N150RT URL Filtering Page cross site scripting
A vulnerability classified as problematic has been found in TOTOLINK N150RT 3.4.0-B20190525. This affects an unknown part of the component URL Filtering Page. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4460?
CVE-2025-4460 is classified as a problematic vulnerability due to its potential for cross-site scripting attacks.
What components are affected by CVE-2025-4460?
CVE-2025-4460 affects the URL Filtering Page of the TOTOLINK N150RT firmware version 3.4.0-B20190525.
How can I fix CVE-2025-4460?
To mitigate CVE-2025-4460, you should update the TOTOLINK N150RT firmware to the latest version provided by the vendor.
Can CVE-2025-4460 be exploited remotely?
Yes, CVE-2025-4460 can be exploited remotely, allowing attackers to initiate cross-site scripting attacks.
What type of attack is associated with CVE-2025-4460?
CVE-2025-4460 is associated with cross-site scripting (XSS) attacks, which can compromise the security of affected systems.