CVE 8.7 HIGH

TOTOLINK T6 MQTT Service updateWifiInfo buffer overflow_CVE-2025-7913

8.7 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P

Description

A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015. Affected is the function updateWifiInfo of the component MQTT Service. The manipulation of the argument serverIp leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

Basic Information

ID CVE-2025-7913
Source VulDB
Published Jul 20, 2025 at 23:32
Modified Jul 21, 2025 at 18:13

Affected Product

Vendor TOTOLINK
Product T6
Version 4.1.5cu.748_B20211015
Affected Versions TOTOLINK T6 4.1.5cu.748_B20211015

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.