Unrated severityNVD Advisory· Published Jul 25, 2025· Updated Jul 25, 2025
TOTOLINK A702R HTTP POST Request formIpQoS buffer overflow
CVE-2025-8137
Description
A vulnerability has been found in TOTOLINK A702R 4.0.0-B20230721.1521 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /boafrm/formIpQoS of the component HTTP POST Request Handler. The manipulation of the argument mac leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected products
2- TOTOLINK/A702Rv5Range: 4.0.0-B20230721.1521
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- github.com/panda666-888/vuls/blob/main/totolink/a702r/formIpQoS.mdmitreexploit
- vuldb.commitrethird-party-advisory
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
- www.totolink.netmitreproduct
News mentions
0No linked articles in our index yet.