CVE-2025-6336: TOTOLINK EX1200T HTTP POST Request formTmultiAP buffer overflow
A vulnerability was found in TOTOLINK EX1200T 4.1.2cu.5232B20210713. It has been classified as critical. Affected is an unknown function of the file /boafrm/formTmultiAP of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6336?
CVE-2025-6336 has been classified as critical.
What component is affected by CVE-2025-6336?
CVE-2025-6336 affects the HTTP POST Request Handler of the TOTOLINK EX1200T.
What causes the vulnerability in CVE-2025-6336?
The vulnerability in CVE-2025-6336 is caused by a buffer overflow resulting from manipulation of the submit-url argument.
How do I fix CVE-2025-6336?
To fix CVE-2025-6336, update the TOTOLINK EX1200T firmware to the latest version that addresses this vulnerability.
Which versions are affected by CVE-2025-6336?
CVE-2025-6336 affects the TOTOLINK EX1200T version 4.1.2cu.5232_B20210713.