CVE-2025-55893: Command Injection
Published Dec 15, 2025
·Updated
TOTOLINK N200RE V9.3.5u.6437B20230519 is vulnerable to command Injection in setOpModeCfg via hostName.
Affected Software
3 affected components
TOTOLINK N200RE=V9.3.5u.6437_B20230519
All of the following
TOTOLINK N200re Firmware=9.3.5u.6437_b20230519
TOTOLINK N200RE
Event History
Dec 15, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-55893?
CVE-2025-55893 is considered a high severity vulnerability due to the potential for command injection.
2
How do I fix CVE-2025-55893?
To fix CVE-2025-55893, it is recommended to update the TOTOLINK N200RE firmware to the latest version provided by the vendor.
3
Who is affected by CVE-2025-55893?
CVE-2025-55893 affects users of the TOTOLINK N200RE with firmware version V9.3.5u.6437_B20230519.
4
What type of vulnerability is CVE-2025-55893?
CVE-2025-55893 is classified as a command injection vulnerability affecting the setOpModeCfg functionality.
5
Can CVE-2025-55893 lead to unauthorized access?
Yes, CVE-2025-55893 can potentially lead to unauthorized access and manipulation of device configurations.