cbcvebase.
CVE-2025-5600
published 2025-06-04

CVE-2025-5600: A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This issue affects the function setLanguageCfg of…

critical9.3CVSS 4.0
AVNACLATNPRNUINVCHVIHVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This issue affects the function setLanguageCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument LangType leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

Affected

5 ranges
VendorProductVersion rangeFixed in
pretixpretix>= 0 < 2026.1.22026.1.2
pretixpretix>= 2026.2.0 < 2026.2.12026.2.1
pretixpretix>= 2026.3.0 < 2026.3.12026.3.1
totolinkex1200t
totolinkex1200t_firmware