CVE-2025-6399 | TOTOLINK X15 1.0.0-B20230714.1105 HTTP POST Request /boafrm/formIPv6Addr submit-url buffer overflow (EUVD-2025-18804)
A vulnerability, which was classified as critical, was found in TOTOLINK X15 1.0.0-B20230714.1105. Affected is an unknown function of the file /boafrm/formIPv6Addr of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is traded as CVE-2025-6399. It is possible to launch the attack remotely. Furthermore, there is an exploit available.