Metrics
Affected Vendors & Products
Wed, 23 Jul 2025 21:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Totolink t6 Firmware
|
|
CPEs | cpe:2.3:h:totolink:t6:3:*:*:*:*:*:*:* cpe:2.3:o:totolink:t6_firmware:v4.1.5cu.748_b20211015:*:*:*:*:*:*:* |
|
Vendors & Products |
Totolink t6 Firmware
|
Fri, 18 Jul 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 17 Jul 2025 21:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, has been found in TOTOLINK T6 up to 4.1.5cu.748_B20211015. Affected by this issue is the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulation of the argument ip leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |
Title | TOTOLINK T6 HTTP POST Request cstecgi.cgi setDiagnosisCfg buffer overflow | |
Weaknesses | CWE-119 CWE-120 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-07-17T21:14:08.542Z
Updated: 2025-07-18T14:58:05.269Z
Reserved: 2025-07-17T10:43:16.898Z
Link: CVE-2025-7758

Updated: 2025-07-18T14:48:19.719Z

Status : Analyzed
Published: 2025-07-17T22:15:27.537
Modified: 2025-07-23T20:58:43.130
Link: CVE-2025-7758

No data.