CVE-2025-5790: TOTOLINK X15 HTTP POST Request formIpQoS buffer overflow
A vulnerability classified as critical was found in TOTOLINK X15 1.0.0-B20230714.1105. This vulnerability affects unknown code of the file /boafrm/formIpQoS of the component HTTP POST Request Handler. The manipulation of the argument mac leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-5790?
CVE-2025-5790 is classified as a critical vulnerability.
What components are affected by CVE-2025-5790?
CVE-2025-5790 affects the HTTP POST Request Handler of the TOTOLINK X15 router.
What is the cause of CVE-2025-5790?
The vulnerability is caused by a buffer overflow resulting from improper handling of the 'mac' argument.
How can I mitigate CVE-2025-5790?
To mitigate CVE-2025-5790, ensure your TOTOLINK X15 firmware is updated to the latest version.
What are the potential impacts of exploiting CVE-2025-5790?
Exploiting CVE-2025-5790 could allow attackers to execute arbitrary code, leading to unauthorized system access.