Home

Description

Totolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the ssid parameter in the sub_425400 function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

PUBLISHED Reserved 2025-10-27 | Published 2025-10-31 | Updated 2025-11-03 | Assigner mitre

References

github.com/0-fool/VulnbyCola/blob/main/TOTOLINK/LR350/3/1.md exploit

github.com/0-fool/VulnbyCola/blob/main/TOTOLINK/LR350/3/1.md

cve.org (CVE-2025-63467)

nvd.nist.gov (CVE-2025-63467)

Download JSON