CVE-2025-6825: TOTOLINK A702R HTTP POST Request formWlSiteSurvey buffer overflow
A vulnerability classified as critical was found in TOTOLINK A702R up to 4.0.0-B20230721.1521. Affected by this vulnerability is an unknown functionality of the file /boafrm/formWlSiteSurvey of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6825?
CVE-2025-6825 is classified as a critical vulnerability.
How do I fix CVE-2025-6825?
To mitigate CVE-2025-6825, users should update their TOTOLINK A702R device to version 4.0.0-B20230721.1522 or later.
What functionality is affected by CVE-2025-6825?
CVE-2025-6825 affects the HTTP POST Request Handler, specifically the argument submit-url.
What devices are impacted by CVE-2025-6825?
CVE-2025-6825 impacts the TOTOLINK A702R devices running firmware up to 4.0.0-B20230721.1521.
What are the potential consequences of CVE-2025-6825?
Exploitation of CVE-2025-6825 may allow unauthorized manipulation of the submit-url argument, leading to further security breaches.