Buffer Overflow Vulnerability in TOTOLINK X15 HTTP POST Handler
CVE-2025-5735
8.7HIGH
What is CVE-2025-5735?
A buffer overflow vulnerability has been identified in the HTTP POST Request Handler of TOTOLINK X15 version 1.0.0-B20230714.1105. This vulnerability arises from improper handling of the 'submit-url' argument in the /boafrm/formSetLg file, which can be exploited remotely. Successful exploitation could allow an attacker to manipulate memory, potentially leading to arbitrary code execution or a system crash. Given its public disclosure, it is crucial for users to take immediate steps to mitigate risks associated with this vulnerability.
Affected Version(s)
X15 1.0.0-B20230714.1105