First published: Fri May 02 2025(Updated: )
TOTOLINK A950RG V4.1.2cu.5204_B20210112 contains a command execution vulnerability in the setDeviceName interface of the /lib/cste_modules/global.so library, specifically in the processing of the deviceMac parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
TOTOlink A950RG |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-45800 has a high severity due to its potential for command execution.
To fix CVE-2025-45800, update your TOTOLINK A950RG device to the latest firmware version that addresses this vulnerability.
CVE-2025-45800 specifically affects the TOTOLINK A950RG router with version V4.1.2cu.5204_B20210112.
Yes, CVE-2025-45800 can potentially allow attackers to execute commands and gain unauthorized access to the affected device.
The command execution vulnerability in CVE-2025-45800 involves the insecure handling of the deviceMac parameter in the setDeviceName interface.