Home

Description

In TOTOLINK A7000R firmware 9.1.0u.6115_B20201022, an attacker can bypass login by sending a specific request through formLoginAuth.htm.

PUBLISHED Reserved 2025-06-16 | Published 2025-08-13 | Updated 2025-08-14 | Assigner mitre

References

www.totolink.net/...menu_listtpl/download/id/171/ids/36.html

a7000rfirmware.com

gist.github.com/lin-3-start/5b20f6fbe3aa0c3fc75f320cd589182a

cve.org (CVE-2025-51452)

nvd.nist.gov (CVE-2025-51452)

Download JSON