CVE-2025-4462: TOTOLINK N150RT formWsc buffer overflow
Published May 9, 2025
·Updated
A vulnerability, which was classified as critical, has been found in TOTOLINK N150RT 3.4.0-B20190525. This issue affects some unknown processing of the file /boafrm/formWsc. The manipulation of the argument localPin leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
3 affected components
TOTOLINK N150RT
All of the following
TOTOLINK N150rt Firmware=3.4.0-b20190525
TOTOLINK N150RT
Event History
May 9, 2025
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-4462?
CVE-2025-4462 is classified as a critical vulnerability.
2
What type of vulnerability is CVE-2025-4462?
CVE-2025-4462 is a buffer overflow vulnerability.
3
How can an attacker exploit CVE-2025-4462?
An attacker can exploit CVE-2025-4462 remotely by manipulating the argument localPin.
4
What devices are affected by CVE-2025-4462?
CVE-2025-4462 affects TOTOLINK N150RT with firmware version 3.4.0-B20190525.
5
How can I mitigate CVE-2025-4462?
To mitigate CVE-2025-4462, it is recommended to update to a patched version of the firmware.