PT-2025-20418 · Totolink · Totolink A3100R

·

CVE-2025-45789

·

Published

2025-05-08

·

Updated

2025-05-08

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions TOTOLINK A3100R version 5.9c.1527
Description The issue is related to a buffer overflow that can be triggered via the urlKeyword parameter in the setParentalRules function. This allows for potential exploitation.
Recommendations For TOTOLINK A3100R version 5.9c.1527, consider restricting access to the setParentalRules function until a patch is available, and avoid using the urlKeyword parameter in this function to minimize the risk of exploitation.

Exploit

Fix

Memory Corruption

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-10005
CVE-2025-45789

Affected Products

Totolink A3100R