CVE-2025-7154
08.07.2025, 01:15
A vulnerability, which was classified as critical, has been found in TOTOLINK N200RE 9.3.5u.6095_B20200916/9.3.5u.6139_B20201216. Affected by this issue is the function sub_41A0F8 of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument Hostname leads to os command injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Vendor | Product | Version |
---|---|---|
totolink | n200re_firmware | 9.3.5u.6095_b20200916:u.6095_b20200916 |
totolink | n200re_firmware | 9.3.5u.6139_b20201216:u.6139_b20201216 |
𝑥
= Vulnerable software versions