CVE-2025-55893 β€” Command Injection in N200re Firmware

Severity
6.5MEDIUMNVD
EPSS
0.5%
top 33.39%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 15

Description

TOTOLINK N200RE V9.3.5u.6437_B20230519 is vulnerable to command Injection in setOpModeCfg via hostName.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages1 packages

β–ΆNVDtotolink/n200re_firmware9.3.5u.6437_b20230519

πŸ”΄Vulnerability Details

2
GHSA
GHSA-96fj-xf34-6gmc: TOTOLINK N200RE V9β†—2025-12-15
β–Ά
CVEList
CVE-2025-55893: TOTOLINK N200RE V9β†—2025-12-15
β–Ά
CVE-2025-55893 β€” Command Injection in N200re Firmware | cvebase