CVE-2025-28036 | TOTOLINK A950RG 4.1.2cu.5161_B20200903 setNoticeCfg NoticeUrl Remote Code Execution (EUVD-2025-12208)
A vulnerability was found in TOTOLINK A950RG 4.1.2cu.5161_B20200903. It has been classified as critical. Affected is the function setNoticeCfg. The manipulation of the argument NoticeUrl leads to Remote Code Execution.
This vulnerability is traded as CVE-2025-28036. It is possible to launch the attack remotely. There is no exploit available.