CVE-2025-6129: TOTOLINK EX1200T HTTP POST Request formSaveConfig buffer overflow
A vulnerability classified as critical was found in TOTOLINK EX1200T 4.1.2cu.5232B20210713. This vulnerability affects unknown code of the file /boafrm/formSaveConfig of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6129?
CVE-2025-6129 is classified as a critical vulnerability.
What component is affected by CVE-2025-6129?
CVE-2025-6129 affects the HTTP POST Request Handler of the TOTOLINK EX1200T.
What is the exploitation method for CVE-2025-6129?
CVE-2025-6129 can be exploited by manipulating the submit-url argument, leading to a buffer overflow.
How do I fix CVE-2025-6129?
To fix CVE-2025-6129, update the TOTOLINK EX1200T to a patched version released by the vendor.
What impact does CVE-2025-6129 have?
Exploiting CVE-2025-6129 may allow an attacker to execute arbitrary code on the affected device.