PT-2025-20418 · Totolink · Totolink A3100R

Sunnyyangyaya

·

Published

2025-05-08

·

Updated

2025-05-08

·

CVE-2025-45789

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions TOTOLINK A3100R version 5.9c.1527
Description The issue is related to a buffer overflow that can be triggered via the urlKeyword parameter in the setParentalRules function. This allows for potential exploitation.
Recommendations For TOTOLINK A3100R version 5.9c.1527, consider restricting access to the setParentalRules function until a patch is available, and avoid using the urlKeyword parameter in this function to minimize the risk of exploitation.

Exploit

Fix

Memory Corruption

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-10005
CVE-2025-45789

Affected Products

Totolink A3100R