CVE-2025-6401 PUBLISHED

TOTOLINK N300RH HTTP POST Message formFilter denial of service

Assigner: VulDB
Reserved: 20.06.2025 Published: 21.06.2025 Updated: 21.06.2025

A vulnerability was found in TOTOLINK N300RH 6.1c.1390_B20191101. It has been classified as problematic. This affects an unknown part of the file /boafrm/formFilter of the component HTTP POST Message Handler. The manipulation of the argument url leads to denial of service. The exploit has been disclosed to the public and may be used.

Metrics

CVSS Vector: CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P
CVSS Score: 5.1

Product Status

Vendor TOTOLINK
Product N300RH
Versions
  • Version 6.1c.1390_B20191101 is affected

Credits

  • yuhongxiang (VulDB User) reporter

References

Problem Types

  • Denial of Service CWE