CVE-2025-44846 | TOTOLINK CA600-PoE 5.3c.6665_B20180820 recvUpgradeNewFw fwUrl command injection (EUVD-2025-12831)
A vulnerability has been found in TOTOLINK CA600-PoE 5.3c.6665_B20180820 and classified as critical. Affected by this vulnerability is the function recvUpgradeNewFw. The manipulation of the argument fwUrl leads to command injection.
This vulnerability is known as CVE-2025-44846. The attack can be launched remotely. There is no exploit available.