CVE-2025-8244: TOTOLINK X15 HTTP POST Request formMapDelDevice buffer overflow
A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been classified as critical. Affected is an unknown function of the file /boafrm/formMapDelDevice of the component HTTP POST Request Handler. The manipulation of the argument macstr leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8244?
CVE-2025-8244 is classified as a critical severity vulnerability.
What does CVE-2025-8244 affect?
CVE-2025-8244 affects the TOTOLINK X15 router, specifically the HTTP POST Request Handler for the argument macstr.
How does CVE-2025-8244 impact the affected systems?
CVE-2025-8244 leads to a buffer overflow which can result in remote code execution or system compromise.
How do I fix CVE-2025-8244?
To address CVE-2025-8244, update the TOTOLINK X15 router to the latest version provided by the manufacturer.
When was CVE-2025-8244 discovered?
CVE-2025-8244 was discovered in the TOTOLINK X15 firmware version 1.0.0-B20230714.1105.