CVE-2025-60687: n/a
An unauthenticated command injection vulnerability exists in the ToToLink LR1200GB Router firmware V9.1.0u.6619_B20230130 within the cstecgi.cgi binary (sub_41EC68 function). The binary reads the "imei" parameter from a web request and verifies only that it is 15 characters long. The parameter is then directly inserted into a system command using sprintf() and executed with system(). Maliciously crafted IMEI input can execute arbitrary commands on the router without authentication.
AI Analysis
Technical Summary
This vulnerability arises from improper input validation in the ToToLink LR1200GB Router firmware 9.1.0u.6619_B20230130. The cstecgi.cgi binary's sub_41EC68 function reads the 'imei' parameter from incoming web requests and only verifies that it is 15 characters long. It then uses sprintf() to insert this parameter directly into a system command, which is executed via system(). Because there is no authentication required and no sanitization beyond length checking, an attacker can craft a malicious 'imei' value to execute arbitrary commands on the router remotely. This is classified under CWE-77 (Improper Neutralization of Special Elements used in a Command).
Potential Impact
An unauthenticated attacker can execute arbitrary commands on the affected router remotely by sending a specially crafted web request with a malicious 'imei' parameter. This can lead to partial compromise of the device's integrity and confidentiality. The CVSS vector indicates network attack vector, low attack complexity, no privileges required, no user interaction, and impacts confidentiality and integrity with no impact on availability.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. No official fix or patch links are currently available. Until a patch is released, restrict access to the router's web interface from untrusted networks and monitor for suspicious requests targeting the 'imei' parameter. Avoid exposing the router's management interface to the internet.
CVE-2025-60687: n/a
Description
An unauthenticated command injection vulnerability exists in the ToToLink LR1200GB Router firmware V9.1.0u.6619_B20230130 within the cstecgi.cgi binary (sub_41EC68 function). The binary reads the "imei" parameter from a web request and verifies only that it is 15 characters long. The parameter is then directly inserted into a system command using sprintf() and executed with system(). Maliciously crafted IMEI input can execute arbitrary commands on the router without authentication.
CVSS v3.1
Score 6.5medium
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This vulnerability arises from improper input validation in the ToToLink LR1200GB Router firmware 9.1.0u.6619_B20230130. The cstecgi.cgi binary's sub_41EC68 function reads the 'imei' parameter from incoming web requests and only verifies that it is 15 characters long. It then uses sprintf() to insert this parameter directly into a system command, which is executed via system(). Because there is no authentication required and no sanitization beyond length checking, an attacker can craft a malicious 'imei' value to execute arbitrary commands on the router remotely. This is classified under CWE-77 (Improper Neutralization of Special Elements used in a Command).
Potential Impact
An unauthenticated attacker can execute arbitrary commands on the affected router remotely by sending a specially crafted web request with a malicious 'imei' parameter. This can lead to partial compromise of the device's integrity and confidentiality. The CVSS vector indicates network attack vector, low attack complexity, no privileges required, no user interaction, and impacts confidentiality and integrity with no impact on availability.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. No official fix or patch links are currently available. Until a patch is released, restrict access to the router's web interface from untrusted networks and monitor for suspicious requests targeting the 'imei' parameter. Avoid exposing the router's management interface to the internet.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- mitre
- Date Reserved
- 2025-09-26T00:00:00.000Z
- State
- PUBLISHED
Threat ID: 6915fe5477eaf5a849603934
Added to database: 11/13/2025, 15:50:44 UTC
Last enriched: 07/05/2026, 21:33:45 UTC
Last updated: 09/10/2026, 19:36:51 UTC
Views: 105
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.