totolink

1,215 tracked vulnerabilities.

CVE-2025-4732 HIGH
TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
May 16, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-4731 HIGH
TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
May 16, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-4730 HIGH
TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via devicemac1 Parameter
May 16, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-4729 MEDIUM
TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615 - OS Command Injection via macstr Parameter
May 16, 2025
CVSS 6.3
EPSS 0.01
CVE-2025-45863 CRITICAL
TOTOLINK A3002R v4.0.0-B20230531.1404 - Buffer Overflow via macstr Parameter in formMapDelDevice Interface
May 13, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-45865 CRITICAL
TOTOLINK A3002R v4.0.0-B20230531.1404 - Buffer Overflow via dnsaddr Parameter in formDhcpv6s Interface
May 13, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-45861 CRITICAL
TOTOLINK A3002R v4.0.0-B20230531.1404 - Buffer Overflow via routername Parameter
May 13, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-45858 CRITICAL
TOTOLINK A3002R v4.0.0-B20230531.1404 - OS Command Injection via FUN_00459fdc Function
May 13, 2025
CVSS 9.8
EPSS 0.17
CVE-2025-45867 MEDIUM
TOTOLINK A3002R v4.0.0-B20230531.1404 - Stack-based Buffer Overflow via static_dns1 Parameter
May 13, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-45866 MEDIUM
TOTOLINK A3002R v4.0.0-B20230531.1404 - Buffer Overflow via addrPoolEnd Parameter in formDhcpv6s Interface
May 13, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-45864 MEDIUM
TOTOLINK A3002R v4.0.0-B20230531.1404 - Buffer Overflow via addrPoolStart Parameter in formDhcpv6s Interface
May 13, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-45859 MEDIUM
TOTOLINK A3002R v4.0.0-B20230531.1404 - Buffer Overflow via bandstr Parameter in formMapDelDevice Interface
May 13, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-4496 HIGH
Totolink A3000ru Firmware - Memory Corruption
May 10, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-4462 HIGH
TOTOLINK N150RT 3.4.0-B20190525 - Buffer Overflow via formWsc localPin Argument
May 09, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-4461 LOW
TOTOLINK N150RT 3.4.0-B20190525 - Cross-Site Scripting in Virtual Server Page
May 09, 2025
CVSS 2.4
EPSS 0.00
CVE-2025-4460 LOW
TOTOLINK N150RT 3.4.0-B20190525 - Cross-Site Scripting in URL Filtering Page
May 09, 2025
CVSS 2.4
EPSS 0.00
CVE-2025-45798 CRITICAL
TOTOLINK A950RG V4.1.2cu.5204_B20210112 - OS Command Injection via setNoticeCfg IpTo Parameter
May 08, 2025
CVSS 9.8
EPSS 0.01
CVE-2025-45797 CRITICAL
TOTOlink A950RG V4.1.2cu.5204_B20210112 - Stack-based Buffer Overflow via NoticeUrl Parameter
May 08, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-45790 CRITICAL
TOTOLINK A3100R V5.9c.1527 - Stack-based Buffer Overflow via setMacQos Priority Parameter
May 08, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-45789 CRITICAL
TOTOLINK A3100R V5.9c.1527 - Stack-based Buffer Overflow via urlKeyword Parameter
May 08, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-45788 CRITICAL
TOTOLINK A3100R V5.9c.1527 - Stack-based Buffer Overflow via setMacFilterRules Comment Parameter
May 08, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-45787 CRITICAL
TOTOLINK A3100R V5.9c.1527 - Stack-based Buffer Overflow via setIpPortFilterRules Comment Parameter
May 08, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-45845 HIGH
TOTOLINK NR1800X V9.1.0u.6681_B20230703 - Authenticated Stack-based Buffer Overflow via ssid5g Parameter
May 08, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-45844 HIGH
TOTOLINK NR1800X V9.1.0u.6681_B20230703 - Authenticated Stack-based Buffer Overflow via SSID Parameter
May 08, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-45843 HIGH
TOTOLINK NR1800X V9.1.0u.6681_B20230703 Authenticated Stack Overflow via SSID in setWiFiGuestCfg
May 08, 2025
CVSS 8.8
EPSS 0.00