Metrics
Affected Vendors & Products
Mon, 30 Jun 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 30 Jun 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015. This affects the function Form_Login of the file /formLoginAuth.htm. The manipulation of the argument authCode/goURL leads to missing authentication. The attack needs to be initiated within the local network. The exploit has been disclosed to the public and may be used. | |
Title | TOTOLINK T6 formLoginAuth.htm Form_Login missing authentication | |
Weaknesses | CWE-287 CWE-306 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-30T17:02:07.995Z
Updated: 2025-06-30T20:47:24.541Z
Reserved: 2025-06-29T12:16:42.829Z
Link: CVE-2025-6916

Updated: 2025-06-30T20:47:12.020Z

Status : Awaiting Analysis
Published: 2025-06-30T17:15:34.593
Modified: 2025-06-30T21:15:32.730
Link: CVE-2025-6916

No data.