CVE-2025-6145: TOTOLINK EX1200T HTTP POST Request formSysLog buffer overflow
A vulnerability was found in TOTOLINK EX1200T 4.1.2cu.5232B20210713 and classified as critical. Affected by this issue is some unknown functionality of the file /boafrm/formSysLog of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6145?
CVE-2025-6145 is classified as a critical vulnerability.
How does CVE-2025-6145 affect the TOTOLINK EX1200T?
CVE-2025-6145 affects the HTTP POST Request Handler component of the TOTOLINK EX1200T.
What type of manipulation leads to the exploitation of CVE-2025-6145?
The exploitation of CVE-2025-6145 can occur through the manipulation of the argument submit-url.
What is the potential impact of CVE-2025-6145?
CVE-2025-6145 could lead to a buffer overflow, potentially allowing remote code execution.
How can I mitigate the risks associated with CVE-2025-6145?
To mitigate the risks of CVE-2025-6145, users should apply available patches or updates for the TOTOLINK EX1200T device.