CVE-2025-5788: TOTOLINK X15 HTTP POST Request formReflashClientTbl buffer overflow
A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been rated as critical. Affected by this issue is some unknown functionality of the file /boafrm/formReflashClientTbl of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-5788?
CVE-2025-5788 is rated as critical.
How do I fix CVE-2025-5788?
To fix CVE-2025-5788, update your TOTOLINK X15 device to the latest firmware version.
What is affected by CVE-2025-5788?
CVE-2025-5788 affects the HTTP POST Request Handler functionality in TOTOLINK X15 version 1.0.0-B20230714.1105.
What type of vulnerability is CVE-2025-5788?
CVE-2025-5788 is a critical vulnerability that involves manipulation of the submit-url argument.
Can CVE-2025-5788 lead to further exploits?
Yes, CVE-2025-5788 can potentially be exploited for unauthorized actions if not mitigated.