CVE-2025-6143
TOTOLINK · EX1200T
A critical vulnerability has been identified in the TOTOLINK EX1200T range extender that may allow for unauthorized system compromise.
Executive summary
A critical vulnerability within the TOTOLINK EX1200T range extender exposes the hardware to severe security risks and unauthorized control.
Vulnerability
This critical security flaw impacts the core functionality of the EX1200T, potentially allowing an attacker to bypass security controls and gain unauthorized access to the device.
Business impact
The CVSS score of 8.8 indicates that this vulnerability is highly dangerous, potentially allowing attackers to disrupt wireless network connectivity or intercept data transmitted through the extender. The potential for unauthorized access to the local network infrastructure poses a significant threat to overall organizational security.
Remediation
Immediate Action: Identify all deployed EX1200T units and apply the latest firmware updates released by the vendor to remediate the vulnerability.
Proactive Monitoring: Inspect system logs for unusual behavior or unauthorized administrative authentication attempts.
Compensating Controls: Disable remote management features on the device to prevent external attackers from reaching the vulnerable interface.
Exploitation status
Public Exploit Available: false
Analyst recommendation
Organizations utilizing TOTOLINK EX1200T devices should move quickly to address this vulnerability. Immediate patching is recommended to prevent potential exploitation, as range extenders are often overlooked in standard vulnerability management cycles.