logo

TOTOLINK EX200 Extender Flaw Allows Attackers Full System Access 

ID: b38a79e3-6cee-5744-b1f5-9b906a3a4dc6

STIX ID: report--b38a79e3-6cee-5744-b1f5-9b906a3a4dc6

Feed Name: GBHackers

Threat Score
72/100

Date Published: 2026-01-07

Date Updated: 2026-05-11

Author: Divya

...
...

A critical vulnerability (CVE-2025-65606) in the TOTOLINK EX200 Wi‑Fi extender's firmware-upload logic can trigger an error state that starts a passwordless Telnet service running as root if a specially malformed firmware file is uploaded via the web management interface. The device is End‑of‑Life and unpatched, enabling full system compromise, lateral network attacks, and persistent access; recommended mitigations are immediate replacement with supported hardware, strict isolation, restricting management access, and monitoring for Telnet activity.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.