totolink

1,196 tracked vulnerabilities.

CVE-2025-52906 CRITICAL
TOTOLINK X6000R < 9.4.0cu.1360_b20241207 - OS Command Injection
Sep 24, 2025
CVSS 9.8
EPSS 0.01
CVE-2025-52905 HIGH
TOTOLINK X6000R <= V9.4.0cu.1360_B20241207 - Denial of Service via Flooding
Sep 23, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-52053 CRITICAL
TOTOLINK X6000R V9.4.0cu.1360_B20241207 - Unauthenticated Command Injection via file_name Parameter
Sep 15, 2025
CVSS 9.8
EPSS 0.64
CVE-2025-57579 HIGH
TOTOLINK X2000R-Gh-V2.0.0 - Remote Code Execution via Default Password
Sep 12, 2025
CVSS 8.0
EPSS 0.00
CVE-2025-9935 HIGH
TOTOLINK N600R 4.3.0cu.7866_B20220506 - Unauthenticated Command Injection via cstecgi.cgi
Sep 04, 2025
CVSS 7.3
EPSS 0.02
CVE-2025-9934 MEDIUM
TOTOLINK X5000R 9.1.0cu.2415_B20250515 - OS Command Injection via pid Parameter
Sep 04, 2025
CVSS 6.3
EPSS 0.02
CVE-2025-9783 HIGH
TOTOLINK A702R 4.0.0-B20211108.1423 - Buffer Overflow via Parent Control Form Submit-URL
Sep 01, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-9782 HIGH
TOTOLINK A702R 4.0.0-B20211108.1423 - Buffer Overflow via formOneKeyAccessButton submit-url Argument
Sep 01, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-9781 HIGH
TOTOLINK A702R 4.0.0-B20211108.1423 - Buffer Overflow via formFilter ip6addr Argument
Sep 01, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-9780 HIGH
TOTOLINK A702R 4.0.0-B20211108.1423 - Buffer Overflow via formIpQoS mac Parameter
Sep 01, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-9779 HIGH
TOTOLINK A702R 4.0.0-B20211108.1423 - Buffer Overflow via formFilter ip6addr Argument
Sep 01, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-9577 LOW
TOTOLINK X2000R <2.0.0 - Use After Free
Aug 28, 2025
CVSS 2.5
EPSS 0.00
CVE-2025-9533 HIGH
TOTOLINK T10 4.1.8cu.5241_B20210927 - Auth Bypass
Aug 27, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-9303 HIGH
TOTOLINK A720R 4.1.5cu.630_B20250509 - Buffer Overflow
Aug 21, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-55591 CRITICAL
TOTOLINK-A3002R v4.0.0-B20230531.1404 - Command Injection
Aug 18, 2025
CVSS 9.8
EPSS 0.09
CVE-2025-55590 MEDIUM
TOTOLINK A3002R v4.0.0-B20230531.1404 - Command Injection
Aug 18, 2025
CVSS 6.5
EPSS 0.03
CVE-2025-55589 MEDIUM
TOTOLINK A3002R v4.0.0-B20230531.1404 - Command Injection
Aug 18, 2025
CVSS 6.5
EPSS 0.03
CVE-2025-55588 HIGH
TOTOLINK A3002R v4.0.0-B20230531.1404 - DoS
Aug 18, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-55587 HIGH
TOTOLINK A3002R v4.0.0-B20230531.1404 - DoS
Aug 18, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-55586 HIGH
TOTOLINK A3002R v4.0.0-B20230531.1404 - DoS
Aug 18, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-55585 MEDIUM
TOTOLINK A3002R v4.0.0-B20230531.1404 - Command Injection
Aug 18, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-55584 MEDIUM
TOTOLINK A3002R v4.0.0-B20230531.1404 - Info Disclosure
Aug 18, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-8938 MEDIUM
TOTOLINK N350R 1.2.3-B20130826 - Backdoor
Aug 14, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-8937 MEDIUM
TOTOLINK N350R 1.2.3-B20130826 - OS Command Injection via formSysCmd
Aug 14, 2025
CVSS 6.3
EPSS 0.01
CVE-2025-51451 CRITICAL
TOTOLINK EX1200T <4.1.2cu.5215 - Auth Bypass
Aug 13, 2025
CVSS 9.8
EPSS 0.00