Vulnerability index

Browse CVEs

1,039 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

A3002r Firmware MEDIUM 6.5
CVE-2025-55589

TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain multiple OS command injection vulnerabilities via the macstr, bandstr, and clientoff …

No fix yet
Fix from $1,600 2025-08-18
A3002r Firmware MEDIUM 6.5
CVE-2025-55590

TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain an command injection vulnerability via the component bupload.html.

No fix yet
Fix from $1,600 2025-08-18
A3002r Firmware HIGH 7.5
CVE-2025-55586

TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain a buffer overflow in the url parameter at /boafrm/formFilter. This vulnerability allo…

No fix yet
Fix from $1,950 2025-08-18
A3002r Firmware HIGH 7.5
CVE-2025-55587

TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain a buffer overflow in the hostname parameter at /boafrm/formMapDelDevice. This vulnera…

No fix yet
Fix from $1,950 2025-08-18
A3002r Firmware MEDIUM 6.5
CVE-2025-55585

TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain an eval injection vulnerability via the eval() function.

No fix yet
Fix from $1,600 2025-08-18
A3002r Firmware MEDIUM 5.3
CVE-2025-55584

TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain insecure credentials for the telnet service and root account.

No fix yet
Fix from $1,600 2025-08-18
N350r Firmware HIGH 8.8
CVE-2025-8937

A vulnerability has been found in TOTOLINK N350R 1.2.3-B20130826. This vulnerability affects unknown code of the file /boafrm/formSysCmd. The manipul…

Mitigation only
Fix from $1,950 2025-08-14
N350r Firmware MEDIUM 6.3
CVE-2025-8938

A vulnerability was found in TOTOLINK N350R 1.2.3-B20130826. This issue affects the function formSysTel of the file /boafrm/formSysTel of the compone…

No fix yet
Fix from $1,600 2025-08-14
Ex1200t Firmware CRITICAL 9.8
CVE-2025-51451

In TOTOLINK EX1200T firmware 4.1.2cu.5215, an attacker can bypass login by sending a specific request through formLoginAuth.htm.

Mitigation only
Fix from $2,300 2025-08-13
A7000r Firmware CRITICAL 9.8
CVE-2025-51452

In TOTOLINK A7000R firmware 9.1.0u.6115_B20201022, an attacker can bypass login by sending a specific request through formLoginAuth.htm.

Mitigation only
Fix from $2,300 2025-08-13
N600r Firmware CRITICAL 9.8
CVE-2025-51390

TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a command injection vulnerability via the pin parameter in the setWiFiWpsConfig func…

Mitigation only
Fix from $2,300 2025-08-04
X6000r Firmware MEDIUM 6.5
CVE-2025-52284

Totolink X6000R V9.4.0cu.1360_B20241207 was found to contain a command injection vulnerability in the sub_4184C0 function via the tz parameter. This …

No fix yet
Fix from $1,600 2025-07-29
X15 Firmware HIGH 7.5
CVE-2025-8246

A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been rated as critical. Affected by this issue is some unknown functionality o…

No fix yet
Fix from $1,950 2025-07-27
X15 Firmware HIGH 7.5
CVE-2025-8245

A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been declared as critical. Affected by this vulnerability is an unknown functi…

No fix yet
Fix from $1,950 2025-07-27
X15 Firmware CRITICAL 9.8
CVE-2025-8244

A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been classified as critical. Affected is an unknown function of the file /boaf…

Mitigation only
Fix from $2,300 2025-07-27
X15 Firmware HIGH 7.5
CVE-2025-8243

A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105 and classified as critical. This issue affects some unknown processing of the file /bo…

No fix yet
Fix from $1,950 2025-07-27
X15 Firmware HIGH 7.5
CVE-2025-8242

A vulnerability has been found in TOTOLINK X15 1.0.0-B20230714.1105 and classified as critical. This vulnerability affects unknown code of the file /…

No fix yet
Fix from $1,950 2025-07-27
N600r Firmware HIGH 7.2
CVE-2025-8181

A vulnerability, which was classified as critical, was found in TOTOLINK N600R and X2000R 1.0.0.1. This affects an unknown part of the file vsftpd.co…

No fix yet
Fix from $1,950 2025-07-26
T6 Firmware HIGH 8.8
CVE-2025-8170

A vulnerability classified as critical was found in TOTOLINK T6 4.1.5cu.748_B20211015. This vulnerability affects the function tcpcheck_net of the fi…

No fix yet
Fix from $1,950 2025-07-25
A702r Firmware HIGH 8.8
CVE-2025-8139

A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521. It has been classified as critical. This affects an unknown part of the file /boafr…

No fix yet
Fix from $1,950 2025-07-25
A702r Firmware HIGH 8.8
CVE-2025-8140EPSS 7%

A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521. It has been declared as critical. This vulnerability affects unknown code of the fi…

No fix yet
Fix from $1,950 2025-07-25
A702r Firmware HIGH 8.8
CVE-2025-8137

A vulnerability has been found in TOTOLINK A702R 4.0.0-B20230721.1521 and classified as critical. Affected by this vulnerability is an unknown functi…

No fix yet
Fix from $1,950 2025-07-25
A702r Firmware HIGH 8.8
CVE-2025-8138EPSS 7%

A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521 and classified as critical. Affected by this issue is some unknown functionality of …

No fix yet
Fix from $1,950 2025-07-25
A702r Firmware HIGH 7.5
CVE-2025-8136

A vulnerability, which was classified as critical, was found in TOTOLINK A702R 4.0.0-B20230721.1521. Affected is an unknown function of the file /boa…

No fix yet
Fix from $1,950 2025-07-25
T6 Firmware HIGH 8.8
CVE-2025-7952EPSS 16%

A vulnerability classified as critical was found in TOTOLINK T6 4.1.5cu.748. This vulnerability affects the function ckeckKeepAlive of the file wirel…

No fix yet
Fix from $1,950 2025-07-22
A7100ru Firmware CRITICAL 9.8
CVE-2025-44655

In TOTOLink A7100RU V7.4, A950RG V5.9, and T10 V5.9, the chroot_local_user option is enabled in the vsftpd.conf. This could lead to unauthorized acce…

Mitigation only
Fix from $2,300 2025-07-21
T6 Firmware HIGH 8.8
CVE-2025-7913

A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015. Affected is the function updateWifiInfo of the com…

No fix yet
Fix from $1,950 2025-07-21
T6 Firmware HIGH 8.8
CVE-2025-7912

A vulnerability, which was classified as critical, has been found in TOTOLINK T6 4.1.5cu.748_B20211015. This issue affects the function recvSlaveUpgs…

No fix yet
Fix from $1,950 2025-07-20
T6 Firmware CRITICAL 9.8
CVE-2025-7862

A vulnerability has been found in TOTOLINK T6 4.1.5cu.748_B20211015 and classified as critical. Affected by this vulnerability is the function setTel…

Mitigation only
Fix from $2,300 2025-07-20
T6 Firmware HIGH 8.8
CVE-2025-7837

A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015 and classified as critical. Affected by this issue is the function recvSlaveStaInfo of…

No fix yet
Fix from $1,950 2025-07-19