8.7
/ 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P
Description
A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015. Affected is the function updateWifiInfo of the component MQTT Service. The manipulation of the argument serverIp leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-7913
Source
VulDB
Published
Jul 20, 2025 at 23:32
Modified
Jul 21, 2025 at 18:13
Affected Product
Vendor
TOTOLINK
Product
T6
Version
4.1.5cu.748_B20211015
Affected Versions
TOTOLINK T6 4.1.5cu.748_B20211015