totolink

1,219 tracked vulnerabilities.

CVE-2024-37634 CRITICAL
TOTOLINK A3700R V9.1.2u.6165_20211012 - Stack-based Buffer Overflow via SSID in setWiFiEasyCfg
Jun 13, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-37633 HIGH
TOTOLINK A3700R V9.1.2u.6165_20211012 - Stack-based Buffer Overflow via SSID in setWiFiGuestCfg
Jun 13, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-37632 CRITICAL
TOTOLINK A3700R V9.1.2u.6165_20211012 - Stack-based Buffer Overflow via loginAuth Password Parameter
Jun 13, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-37631 HIGH
TOTOLINK A3700R V9.1.2u.6165_20211012 - Stack-based Buffer Overflow via UploadCustomModule File Parameter
Jun 13, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-36650 HIGH
TOTOLINK AC1200 Router A3100R Firmware - Buffer Overflow in setNoticeCfg
Jun 11, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-36782 CRITICAL
TOTOLINK CP300 V2.0.4-B20201102 - Info Disclosure
Jun 03, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-36783 CRITICAL
TOTOLINK LR350 V9.3.5u.6369_B20220309 - Command Injection
Jun 03, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-35403 LOW
TOTOLINK CP900L v4.1.5cu.798_B20221228 - Stack-based Buffer Overflow via desc Parameter in setIpPortFilterRules
May 28, 2024
CVSS 2.7
EPSS 0.00
CVE-2024-35401 MEDIUM
TOTOLINK CP900L v4.1.5cu.798_B20221228 - OS Command Injection via UploadFirmwareFile FileName Parameter
May 28, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-35400 MEDIUM
TOTOLINK CP900L v4.1.5cu.798_B20221228 - Stack Overflow via SetPortForwardRules desc Parameter
May 28, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-35399 HIGH
TOTOLINK CP900L v4.1.5cu.798_B20221228 - Stack-based Buffer Overflow via Password Parameter in loginAuth
May 28, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-35398 CRITICAL
TOTOLINK CP900L v4.1.5cu.798_B20221228 - Stack Overflow via setMacFilterRules desc Parameter
May 28, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-35397 HIGH
TOTOLINK CP900L v4.1.5cu.798_B20221228 - OS Command Injection via NTPSyncWithHost HostTime Parameter
May 28, 2024
CVSS 8.8
EPSS 0.04
CVE-2024-35388 HIGH
TOTOLINK NR1800X v9.1.0u.6681_B20230703 - Stack-based Buffer Overflow via Password Parameter in urldecode Function
May 24, 2024
CVSS 8.8
EPSS 0.04
CVE-2024-35387 CRITICAL
TOTOLINK LR350 V9.3.5u.6369_B20220309 - Stack-based Buffer Overflow via loginAuth http_host Parameter
May 24, 2024
CVSS 9.8
EPSS 0.08
CVE-2024-35396 CRITICAL
TOTOLINK CP900L v4.1.5cu.798_B20221228 - Hardcoded Password for Telnet
May 24, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-35395 HIGH
TOTOLINK CP900L <4.1.5cu.798_B20221228 - Info Disclosure
May 24, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-32355 HIGH
TOTOLINK X5000R V9.1.0cu.2350_B20230313 - Command Injection
May 14, 2024
CVSS 8.0
EPSS 0.01
CVE-2024-32354 MEDIUM
TOTOLINK X5000R V9.1.0cu.2350_B20230313 - Command Injection
May 14, 2024
CVSS 6.0
EPSS 0.01
CVE-2024-32353 CRITICAL
TOTOLINK X5000R V9.1.0cu.2350_B20230313 - Command Injection
May 14, 2024
CVSS 9.8
EPSS 0.05
CVE-2024-32352 HIGH
TOTOLINK X5000R V9.1.0cu.2350_B20230313 - Authenticated RCE
May 14, 2024
CVSS 8.8
EPSS 0.05
CVE-2024-32351 HIGH
TOTOLINK X5000R - Authenticated RCE
May 14, 2024
CVSS 8.8
EPSS 0.05
CVE-2024-32350 HIGH
TOTOLINK X5000R V9.1.0cu.2350_B20230313 - Authenticated RCE
May 14, 2024
CVSS 8.8
EPSS 0.05
CVE-2024-32349 MEDIUM
TOTOLINK X5000R - Authenticated RCE
May 14, 2024
CVSS 6.0
EPSS 0.01
CVE-2024-35099 CRITICAL
TOTOLINK LR350 V9.3.5u.6698_B20230810 - Stack Overflow via Password Parameter in loginAuth
May 14, 2024
CVSS 9.8
EPSS 0.00