Buffer Overflow Vulnerability in TOTOLINK A702R Router
CVE-2025-9781
Key Information:
Badges
What is CVE-2025-9781?
A buffer overflow vulnerability has been identified in the TOTOLINK A702R router, specifically in the function sub_4162DC within the /boafrm/formFilter file. This flaw allows an attacker to manipulate the ip6addr argument, leading to potential exploitation via remote command execution. The vulnerability has been disclosed publicly, raising significant security concerns for users of this product. It is crucial for users to take immediate action to mitigate the risks associated with this vulnerability.
Affected Version(s)
A702R 4.0.0-B20211108.1423
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved