cve-2025-6485

MEDIUM CVSS 6.3 opencve
Description

A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been classified as critical. This affects the function formWlSiteSurvey of the file /boafrm/formWlSiteSurvey. The manipulation of the argument wlanif leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Timeline
Published
2025-06-22 17:15 UTC
Last Modified
2026-06-17
CVSS Details

CVSS details not available.

Affected Products

No product information available.

Weaknesses (CWE)
CVSS metrics
Version Base Severity Vector Exploitability Impact Source
4.0 5.3 MEDIUM CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P mitre
3.1 6.3 MEDIUM CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R mitre
3.0 6.3 MEDIUM CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R mitre
4.0 2.1 LOW CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X nvd
3.1 6.3 MEDIUM CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L nvd
4.0 5.3 MEDIUM CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P opencve
3.1 6.3 MEDIUM CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R opencve
3.0 6.3 MEDIUM CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R opencve
References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cve": "CVE-2025-6485",
  "enrichment": {
    "created": "2025-06-23T08:17:26.857384+00:00",
    "updated": "2025-06-23T08:17:26.857420+00:00",
    "vendors": [
      "totolink",
      "totolink$PRODUCT$a3002r"
    ]
  },
  "epss": {
    "score": 0.09122
  },
  "mitre": {
    "cpes": [],
    "created": "2025-06-22T17:00:16.977000+00:00",
    "description": "A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been classified as critical. This affects the function formWlSiteSurvey of the file /boafrm/formWlSiteSurvey. The manipulation of the argument wlanif leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.",
    "metrics": {
      "cvssV2_0": {
        "score": 6.5,
        "vector": "AV:N/AC:L/Au:S/C:P/I:P/A:P/E:POC/RL:ND/RC:UR"
      },
      "cvssV3_0": {
        "score": 6.3,
        "vector": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R"
      },
      "cvssV3_1": {
        "score": 6.3,
        "vector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R"
      },
      "cvssV4_0": {
        "score": 5.3,
        "vector": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P"
      }
    },
    "mitre_repo_path": "cves/2025/6xxx/CVE-2025-6485.json",
    "references": [
      "https://github.com/wudipjq/my_vuln/blob/main/totolink3/vuln_34/34.md",
      "https://vuldb.com/?ctiid.313593",
      "https://vuldb.com/?id.313593",
      "https://vuldb.com/?submit.600727",
      "https://www.totolink.net/"
    ],
    "title": "TOTOLINK A3002R formWlSiteSurvey os command injection",
    "updated": "2025-06-23T13:28:25.470000+00:00",
    "vendors": [],
    "weaknesses": [
      "CWE-77",
      "CWE-78"
    ]
  },
  "nvd": {
    "cpes": [
      "cpe:2.3:h:totolink:a3002r:-:*:*:*:*:*:*:*",
      "cpe:2.3:o:totolink:a3002r_firmware:1.1.1-b20200824.0128:*:*:*:*:*:*:*"
    ],
    "created": "2025-06-22T17:15:23.043000+00:00",
    "description": "A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been classified as critical. This affects the function formWlSiteSurvey of the file /boafrm/formWlSiteSurvey. The manipulation of the argument wlanif leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.",
    "metrics": {
      "cvssV2_0": {
        "score": 6.5,
        "vector": "AV:N/AC:L/Au:S/C:P/I:P/A:P"
      },
      "cvssV3_0": {},
      "cvssV3_1": {
        "score": 6.3,
        "vector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"
      },
      "cvssV4_0": {
        "score": 2.1,
        "vector": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
      }
    },
    "nvd_repo_path": "2025/CVE-2025-6485.json",
    "references": [
      "https://github.com/wudipjq/my_vuln/blob/main/totolink3/vuln_34/34.md",
      "https://vuldb.com/?ctiid.313593",
      "https://vuldb.com/?id.313593",
      "https://vuldb.com/?submit.600727",
      "https://www.totolink.net/"
    ],
    "title": null,
    "updated": "2026-06-17T10:01:59.750000+00:00",
    "vendors": [
      "totolink",
      "totolink$PRODUCT$a3002r",
      "totolink$PRODUCT$a3002r_firmware"
    ],
    "weaknesses": [
      "CWE-77",
      "CWE-78"
    ]
  },
  "opencve": {
    "changes": [
      {
        "created": "2025-06-22T17:15:00+00:00",
        "data": [
          {
            "details": {
              "new": "A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been classified as critical. This affects the function formWlSiteSurvey of the file /boafrm/formWlSiteSurvey. The manipulation of the argument wlanif leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.",
              "old": null
            },
            "type": "description"
          },
          {
            "details": {
              "new": "TOTOLINK A3002R formWlSiteSurvey os command injection",
              "old": null
            },
            "type": "title"
          },
          {
            "details": {
              "added": [
                "CWE-77",
                "CWE-78"
              ],
              "removed": []
            },
            "type": "weaknesses"
          },
          {
            "details": {
              "added": [
                "https://github.com/wudipjq/my_vuln/blob/main/totolink3/vuln_34/34.md",
                "https://vuldb.com/?ctiid.313593",
                "https://vuldb.com/?id.313593",
                "https://vuldb.com/?submit.600727",
                "https://www.totolink.net/"
              ],
              "removed": []
            },
            "type": "references"
          },
          {
            "details": {
              "added": {
                "cvssV2_0": {
                  "score": 6.5,
                  "vector": "AV:N/AC:L/Au:S/C:P/I:P/A:P/E:POC/RL:ND/RC:UR"
                },
                "cvssV3_0": {
                  "score": 6.3,
                  "vector": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R"
                },
                "cvssV3_1": {
                  "score": 6.3,
                  "vector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R"
                },
                "cvssV4_0": {
                  "score": 5.3,
                  "vector": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P"
                }
              },
              "removed": {},
              "updated": {}
            },
            "type": "metrics"
          }
        ],
        "id": "c16993af-e2be-4e7f-84ae-8f23faf265db"
      },
      {
        "created": "2025-06-23T14:15:00+00:00",
        "data": [
          {
            "details": {
              "added": {
                "ssvc": {
                  "options": {
                    "Automatable": "no",
                    "Exploitation": "poc",
                    "Technical Impact": "partial"
                  },
                  "version": "2.0.3"
                }
              },
              "removed": {},
              "updated": {}
            },
            "type": "metrics"
          }
        ],
        "id": "57c1a088-f7cf-4f9a-9d64-a702d63aedf3"
      },
      {
        "created": "2025-06-25T20:00:00+00:00",
        "data": [
          {
            "details": [
              "totolink",
              "totolink$PRODUCT$a3200r",
              "totolink$PRODUCT$a3200r_firmware"
            ],
            "type": "first_time"
          },
          {
            "details": {
              "added": [
                "cpe:2.3:h:totolink:a3200r:-:*:*:*:*:*:*:*",
                "cpe:2.3:o:totolink:a3200r_firmware:1.1.1-b20200824.0128:*:*:*:*:*:*:*"
              ],
              "removed": []
            },
            "type": "cpes"
          },
          {
            "details": {
              "added": [
                "totolink",
                "totolink$PRODUCT$a3200r",
                "totolink$PRODUCT$a3200r_firmware"
              ],
              "removed": []
            },
            "type": "vendors"
          }
        ],
        "id": "e0432a41-7d23-4631-b36c-fc86fd79d201"
      },
      {
        "created": "2025-08-14T20:30:00+00:00",
        "data": [
          {
            "details": [
              "totolink$PRODUCT$a3002r_firmware"
            ],
            "type": "first_time"
          },
          {
            "details": {
              "added": [
                "cpe:2.3:h:totolink:a3002r:-:*:*:*:*:*:*:*",
                "cpe:2.3:o:totolink:a3002r_firmware:1.1.1-b20200824.0128:*:*:*:*:*:*:*"
              ],
              "removed": [
                "cpe:2.3:h:totolink:a3200r:-:*:*:*:*:*:*:*",
                "cpe:2.3:o:totolink:a3200r_firmware:1.1.1-b20200824.0128:*:*:*:*:*:*:*"
              ]
            },
            "type": "cpes"
          },
          {
            "details": {
              "added": [
                "totolink$PRODUCT$a3002r_firmware"
              ],
              "removed": [
                "totolink$PRODUCT$a3200r",
                "totolink$PRODUCT$a3200r_firmware"
              ]
            },
            "type": "vendors"
          }
        ],
        "id": "fdd07f0d-54ef-45ce-9aac-dd5433bad9d8"
      }
    ],
    "cpes": {
      "data": [
        "cpe:2.3:h:totolink:a3002r:-:*:*:*:*:*:*:*",
        "cpe:2.3:o:totolink:a3002r_firmware:1.1.1-b20200824.0128:*:*:*:*:*:*:*"
      ],
      "providers": [
        "nvd"
      ]
    },
    "created": {
      "data": "2025-06-22T17:00:16.977000+00:00",
      "provider": "mitre"
    },
    "description": {
      "data": "A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been classified as critical. This affects the function formWlSiteSurvey of the file /boafrm/formWlSiteSurvey. The manipulation of the argument wlanif leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.",
      "provider": "mitre"
    },
    "metrics": {
      "cvssV2_0": {
        "data": {
          "score": 6.5,
          "vector": "AV:N/AC:L/Au:S/C:P/I:P/A:P/E:POC/RL:ND/RC:UR"
        },
        "provider": "mitre"
      },
      "cvssV3_0": {
        "data": {
          "score": 6.3,
          "vector": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R"
        },
        "provider": "mitre"
      },
      "cvssV3_1": {
        "data": {
          "score": 6.3,
          "vector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R"
        },
        "provider": "mitre"
      },
      "cvssV4_0": {
        "data": {
          "score": 5.3,
          "vector": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P"
        },
        "provider": "mitre"
      },
      "epss": {
        "data": {
          "score": 0.09122
        },
        "provider": "first"
      },
      "kev": {
        "data": {},
        "provider": null
      },
      "ssvc": {
        "data": {
          "options": {
            "Automatable": "no",
            "Exploitation": "poc",
            "Technical Impact": "partial"
          },
          "version": "2.0.3"
        },
        "provider": "vulnrichment"
      },
      "threat_severity": {
        "data": null,
        "provider": null
      }
    },
    "references": {
      "data": [
        "https://github.com/wudipjq/my_vuln/blob/main/totolink3/vuln_34/34.md",
        "https://vuldb.com/?ctiid.313593",
        "https://vuldb.com/?id.313593",
        "https://vuldb.com/?submit.600727",
        "https://www.totolink.net/"
      ],
      "providers": [
        "mitre",
        "nvd"
      ]
    },
    "title": {
      "data": "TOTOLINK A3002R formWlSiteSurvey os command injection",
      "provider": "mitre"
    },
    "updated": {
      "data": "2025-08-14T20:27:53.800000+00:00",
      "provider": "nvd"
    },
    "vendors": {
      "data": [
        "totolink",
        "totolink$PRODUCT$a3002r",
        "totolink$PRODUCT$a3002r_firmware"
      ],
      "providers": [
        "nvd",
        "enrichment"
      ]
    },
    "weaknesses": {
      "data": [
        "CWE-77",
        "CWE-78"
      ],
      "providers": [
        "mitre",
        "nvd"
      ]
    }
  },
  "vulnrichment": {
    "cpes": [],
    "created": "2025-06-22T17:00:16.977000+00:00",
    "description": "A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been classified as critical. This affects the function formWlSiteSurvey of the file /boafrm/formWlSiteSurvey. The manipulation of the argument wlanif leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.",
    "metrics": {
      "cvssV2_0": {},
      "cvssV3_0": {},
      "cvssV3_1": {},
      "cvssV4_0": {},
      "kev": {},
      "ssvc": {
        "options": {
          "Automatable": "no",
          "Exploitation": "poc",
          "Technical Impact": "partial"
        },
        "version": "2.0.3"
      }
    },
    "references": [],
    "title": "TOTOLINK A3002R formWlSiteSurvey os command injection",
    "updated": "2025-06-23T13:28:16.565000+00:00",
    "vendors": [],
    "vulnrichment_repo_path": "2025/6xxx/CVE-2025-6485.json",
    "weaknesses": []
  }
}
Enrichment data
View JSON API Download JSON