Buffer Overflow Vulnerability in TOTOLINK EX1200T Router Component
CVE-2025-6162
Key Information:
Badges
What is CVE-2025-6162?
A buffer overflow vulnerability exists in the HTTP POST Request Handler component of the TOTOLINK EX1200T router. Specifically, the issue arises from manipulation of the 'submit-url' argument in the /boafrm/formMultiAP file. This vulnerability allows an attacker to execute a remote exploit, potentially compromising the device's functionality. With the exploit publicly disclosed, immediate attention to upgrading affected firmware versions is crucial to mitigate risk.
Affected Version(s)
EX1200T 4.1.2cu.5232_B20210713
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved