CVE-2025-45845: High severity totolink nr1800x firmware vulnerability
Published May 8, 2025
·Updated
TOTOLINK NR1800X V9.1.0u.6681B20230703 was discovered to contain an authenticated stack overflow via the ssid5g parameter in the setWiFiEasyGuestCfg function.
Affected Software
3 affected components
TOTOLINK NR1800X
All of the following
TOTOLINK Nr1800x Firmware=9.1.0u.6681_b20230703
TOTOLINK NR1800X
Event History
May 8, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Oct 7, 57345
Event
via FIRST·08:57 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-45845?
CVE-2025-45845 is considered a high severity vulnerability due to its potential for enabling remote code execution.
2
How do I fix CVE-2025-45845?
To fix CVE-2025-45845, update your TOTOLINK NR1800X to the latest firmware version that addresses this vulnerability.
3
What impact does CVE-2025-45845 have?
CVE-2025-45845 can lead to unauthorized control over the affected device, potentially compromising network security.
4
Who is affected by CVE-2025-45845?
CVE-2025-45845 affects users running the TOTOLINK NR1800X device with the specified firmware version.
5
What is the nature of the vulnerability in CVE-2025-45845?
CVE-2025-45845 involves an authenticated stack overflow vulnerability that arises from improper handling of the ssid5g parameter.