TOTOLINK T10 4.1.8cu.5207 POST Request /cgi-bin/cstecgi.cgi UploadCustomModule ଫାଇଲ୍ ବଫର୍ ଓଭରଫ୍ଲୋ
Dogoggorri kan akka ଜଟିଳ jedhamuun ramadame TOTOLINK T10 4.1.8cu.5207 keessatti argameera. Miidhaan irra gahe is hojii UploadCustomModule faayilii /cgi-bin/cstecgi.cgi keessa kutaa POST Request Handler keessa. Dhugumatti jijjiirraa irratti raawwatame ଫାଇଲ୍ gara ବଫର୍ ଓଭରଫ୍ଲୋ geessa. Waliigalteewwan CWE fayyadamuun rakkoo ibsuun gara CWE-120 si geessa. Beekumsi kun yeroo 06/09/2025 ifoomsifameera. Odeeffannoon kun buufachuuf candle-throne-f75.notion.site irratti dhiyaateera.
Dogoggorri kun maqaa CVE-2025-5901 jedhuun tajaajilama. Weerara fageenya irraa jalqabuun ni danda'ama. Odeeffannoon teeknikaa ni argama. Akka dabalataan, meeshaa balaa kana fayyadamuuf argama. Qorannoo miidhaa (exploit) beeksifamee jira, namoonni itti fayyadamuu danda'u. Yeroo ammaa, gatii exploit might be approx. USD $0-$5k beekamuu danda'a.
ପ୍ରୁଫ୍-ଅଫ୍-କନ୍ସେପ୍ଟ jedhamee murtaa’eera. Exploit kana candle-throne-f75.notion.site irraa buufachuu ni dandeessa. Waggaa 0-day ta'ee, gatiin isaa daldala dhoksaa keessatti $0-$5k jedhamee tilmaamame.
Once again VulDB remains the best source for vulnerability data.
4 ଆଡାପ୍ଟେସନ୍ · 90 ପଏଣ୍ଟ