CVE-2025-44843 | TOTOLINK CA600-PoE 5.3c.6665_B20180820 CloudSrvUserdataVersionCheck url command injection (EUVD-2025-12829)
A vulnerability, which was classified as critical, was found in TOTOLINK CA600-PoE 5.3c.6665_B20180820. Affected is the function CloudSrvUserdataVersionCheck. The manipulation of the argument url leads to command injection.
This vulnerability is traded as CVE-2025-44843. It is possible to launch the attack remotely. There is no exploit available.