A vulnerability classified as critical was found in TOTOLINK X15 1.0.0-B20230714.1105. This vulnerability affects unknown code of the file /boafrm/formIpQoS of the component HTTP POST Request Handler. The manipulation of the argument mac leads to buffer overflow.

This vulnerability was named CVE-2025-5790. The attack can be initiated remotely. Furthermore, there is an exploit available.