216.73.216.36

CVE-2025-9782

· Published 01/09/2025 14:15 · Modified 01/09/2025 14:15

Labels: CVE-2025-9782 2025-09-01CVE-2025-9782CWE-119[email protected]

Essential information

Published
01/09/2025 14:15
Modified
01/09/2025 14:15
Author
Creator
CVSS
7.4 HIGH (v3) 7.4 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A vulnerability was found in TOTOLINK A702R 4.0.0-B20211108.1423. This vulnerability affects the function sub_4466F8 of the file /boafrm/formOneKeyAccessButton. Performing manipulation of the argument submit-url results in buffer overflow. The attack may be initiated remotely. The exploit has been made public and could be used.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
totolink / a702r cpe:2.3:a:totolink:a702r:4.0.0-b20211108.1423:*:*:*:*:*:*:*

References