Metrics
Affected Vendors & Products
Fri, 06 Jun 2025 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Totolink
Totolink x15 Totolink x15 Firmware |
|
Weaknesses | CWE-787 | |
CPEs | cpe:2.3:h:totolink:x15:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:x15_firmware:1.0.0-b20230714.1105:*:*:*:*:*:*:* |
|
Vendors & Products |
Totolink
Totolink x15 Totolink x15 Firmware |
Tue, 03 Jun 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 03 Jun 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, has been found in TOTOLINK X15 1.0.0-B20230714.1105. Affected by this issue is the function formMapReboot of the file /boafrm/formMapReboot. The manipulation of the argument deviceMacAddr leads to command injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | TOTOLINK X15 formMapReboot command injection | |
Weaknesses | CWE-74 CWE-77 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-03T14:00:24.217Z
Updated: 2025-06-03T14:15:32.604Z
Reserved: 2025-06-03T05:31:33.725Z
Link: CVE-2025-5502

Updated: 2025-06-03T14:15:24.714Z

Status : Analyzed
Published: 2025-06-03T14:15:51.893
Modified: 2025-06-06T17:42:05.687
Link: CVE-2025-5502

No data.