Security Advisory

CVE-2025-6916

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-06-30 17:02:07
Last updated 2025-06-30 20:47:24
Assigner VulDB
CVSS score not scored
State PUBLISHED

Description

A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015. This affects the function Form_Login of the file /formLoginAuth.htm. The manipulation of the argument authCode/goURL leads to missing authentication. The attack needs to be initiated within the local network. The exploit has been disclosed to the public and may be used.