CVE-2025-8243: TOTOLINK X15 HTTP POST Request formMapDel buffer overflow
A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105 and classified as critical. This issue affects some unknown processing of the file /boafrm/formMapDel of the component HTTP POST Request Handler. The manipulation of the argument devicemac1 leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8243?
CVE-2025-8243 is classified as a critical vulnerability.
What does CVE-2025-8243 affect?
CVE-2025-8243 affects the HTTP POST Request Handler in the TOTOLINK X15 router.
What is the cause of the CVE-2025-8243 vulnerability?
The vulnerability is caused by a buffer overflow due to manipulation of the argument devicemac1.
How do I fix CVE-2025-8243?
To fix CVE-2025-8243, apply the latest firmware update provided by TOTOLINK for the X15 model.
What are the potential risks of CVE-2025-8243?
The potential risks include unauthorized access and remote code execution due to the buffer overflow vulnerability.