Impact
The vulnerability resides in the updateLanIp function of the cs_broker component in TOTOLINK T6 firmware 4.1.5cu.748_B20211015. It permits attackers without authentication to send a specially crafted MQTT message that forces the device to refresh its LAN address state. This can lead to unintended network reconfiguration, potentially disrupting local connectivity or allowing further exploitation of the device. The weakness is a type of improper access control, making the device vulnerable to remote manipulation of its configuration.
Affected Systems
The affected product is the TOTOLINK T6 router running firmware version 4.1.5cu.748_B20211015. No other vendors or product variants are listed.
Risk and Exploitability
Because the flaw can be triggered by unauthenticated actors over an MQTT interface, the potential impact is significant for networks that expose the device to the internet. Publicly available scoring data such as EPSS are not provided, but the CVSS score is 5.3, indicating moderate severity. The absence of authentication controls suggests a high likelihood of exploitation if the MQTT broker is reachable from outside. The vulnerability is not currently catalogued in the CISA KEV database, which may indicate it is not yet widely exploited, but defenders should anticipate possible misuse.
OpenCVE Enrichment