ID

VAR-202512-0097


CVE

CVE-2025-13184


TITLE

TOTOLINK's X5000R's (AX1800 router) lacks authentication for telnet

Trust: 0.8

sources: CERT/CC: VU#821724

DESCRIPTION

Unauthenticated Telnet enablement via cstecgi.cgi (auth bypass) leading to unauthenticated root login with a blank password on factory/reset X5000R V9.1.0u.6369_B20230113 (arbitrary command execution). Earlier versions that share the same implementation, may also be affected. An unauthenticated HTTP request can enable telnet which may lead to remote code execution with root-level privileges.CVE-2025-13184 UnknownCVE-2025-13184 Unknown

Trust: 1.62

sources: NVD: CVE-2025-13184 // CERT/CC: VU#821724

AFFECTED PRODUCTS

vendor:totolinkmodel:x5000rscope:eqversion:9.1.0u.6369_b20230113

Trust: 1.0

sources: NVD: CVE-2025-13184

CVSS

SEVERITY

CVSSV2

CVSSV3

134c704f-9b21-4f2e-91b3-4a467353bcc0: CVE-2025-13184
value: CRITICAL

Trust: 1.0

134c704f-9b21-4f2e-91b3-4a467353bcc0: CVE-2025-13184
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 3.9
impactScore: 5.9
version: 3.1

Trust: 1.0

sources: NVD: CVE-2025-13184

PROBLEMTYPE DATA

problemtype:CWE-863

Trust: 1.0

sources: NVD: CVE-2025-13184

EXTERNAL IDS

db:NVDid:CVE-2025-13184

Trust: 1.8

db:CERT/CCid:VU#821724

Trust: 1.8

sources: CERT/CC: VU#821724 // NVD: CVE-2025-13184

REFERENCES

url:https://hackingbydoing.wixsite.com/hackingbydoing/post/totolink-x5000r-ax1800-router-authentication-bypass

Trust: 1.0

url:https://www.kb.cert.org/vuls/id/821724

Trust: 1.0

sources: NVD: CVE-2025-13184

CREDITS

We have not received a statement from the vendor.Sponsored by CISA.

Trust: 0.8

sources: CERT/CC: VU#821724

SOURCES

db:CERT/CCid:VU#821724
db:NVDid:CVE-2025-13184

LAST UPDATE DATE

2025-12-20T23:32:35.891000+00:00


SOURCES UPDATE DATE

db:CERT/CCid:VU#821724date:2025-12-09T00:00:00
db:NVDid:CVE-2025-13184date:2025-12-19T19:27:20.293

SOURCES RELEASE DATE

db:CERT/CCid:VU#821724date:2025-12-09T00:00:00
db:NVDid:CVE-2025-13184date:2025-12-10T13:16:02.970