Vulnerability Description
Buffer overflow vulnerability in TOTOLink X6000R routers V9.4.0cu.652_B20230116 due to the lack of length verification, which is related to the addition of Wi-Fi filtering rules. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Totolink | X6000R Firmware | 9.4.0cu.652_b20230116 |
| Totolink | X6000R | - |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-25524?
CVE-2025-25524 is a vulnerability with a CVSS score of 5.1 (MEDIUM). Buffer overflow vulnerability in TOTOLink X6000R routers V9.4.0cu.652_B20230116 due to the lack of length verification, which is related to the addition of Wi-Fi filtering rules. Attackers who success...
How severe is CVE-2025-25524?
CVE-2025-25524 has been rated MEDIUM with a CVSS base score of 5.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-25524?
Check the references section above for vendor advisories and patch information. Affected products include: Totolink X6000R Firmware, Totolink X6000R.