CVE-2025-46060: Buffer Overflow
Published Jun 13, 2025
·Updated
Buffer Overflow vulnerability in TOTOLINK N600R v4.3.0cu.7866B2022506 allows a remote attacker to execute arbitrary code via the UPLOADFILENAME component
Affected Software
2 affected components
All of the following
TOTOLINK N600R firmware=4.3.0cu.7866_b2022506
TOTOLINK N600R
Event History
Jun 13, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-46060?
The severity of CVE-2025-46060 is considered high due to the potential for remote code execution.
2
How do I fix CVE-2025-46060?
To fix CVE-2025-46060, update the TOTOLINK N600R firmware to the recommended secure version provided by the vendor.
3
What types of attacks can exploit CVE-2025-46060?
CVE-2025-46060 can be exploited through a buffer overflow attack allowing remote attackers to execute arbitrary code.
4
Who is affected by CVE-2025-46060?
Users running TOTOLINK N600R firmware version 4.3.0cu.7866_B2022506 are affected by CVE-2025-46060.
5
Is CVE-2025-46060 a known issue in older firmware?
Yes, CVE-2025-46060 is specifically associated with the vulnerable version of the TOTOLINK N600R firmware and prior versions may also be at risk.