Security Advisory

CVE-2025-4496

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-05-10 05:00:10
Last updated 2025-05-12 19:30:55
Assigner VulDB
State PUBLISHED

Description

A vulnerability was found in TOTOLINK T10, A3100R, A950RG, A800R, N600R, A3000RU and A810R 4.1.8cu.5241_B20210927. It has been declared as critical. This vulnerability affects the function CloudACMunualUpdate of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument FileName leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.