Vulnerability index

Browse CVEs

1,039 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2024-37634 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid in the function setWiFiEasyCfg. A3700r Firmware No fix yet Fix from $2,3002024-06-13 CRITICAL 9.8 CVE-2024-37635 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid in the function setWiFiBasicCfg A3700r Firmware No fix yet Fix from $2,3002024-06-13 HIGH 8.8 CVE-2024-37631 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via the File parameter in function UploadCustomModule. A3700r Firmware No fix yet Fix from $1,9502024-06-13 HIGH 8.8 CVE-2024-37633 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid in the function setWiFiGuestCfg A3700r Firmware No fix yet Fix from $1,9502024-06-13 HIGH 7.5 CVE-2024-36650 TOTOLINK AC1200 Wireless Dual Band Gigabit Router firmware A3100R V4.1.2cu.5247_B20211129, in the cgi function `setNoticeCfg` of the file `/lib/cste_… A3100r Firmware No fix yet Fix from $1,9502024-06-11 CRITICAL 9.8 CVE-2024-36782 TOTOLINK CP300 V2.0.4-B20201102 was discovered to contain a hardcoded password vulnerability in /etc/shadow.sample, which allows attackers to log in … Cp300 Firmware Mitigation only Fix from $2,3002024-06-03 CRITICAL 9.8 CVE-2024-36783 TOTOLINK LR350 V9.3.5u.6369_B20220309 was discovered to contain a command injection via the host_time parameter in the NTPSyncWithHost function. Lr350 Firmware Mitigation only Fix from $2,3002024-06-03 MEDIUM 5.9 CVE-2024-35401 TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a command injection vulnerability via the FileName parameter in the UploadFirmwareFi… Cp900l Firmware Mitigation only Fix from $1,6002024-05-28 CRITICAL 9.8 CVE-2024-35398 TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a stack overflow via the desc parameter in the function setMacFilterRules. Cp900l Firmware Mitigation only Fix from $2,3002024-05-28 HIGH 8.8 CVE-2024-35397EPSS 15% TOTOLINK CP900L v4.1.5cu.798_B20221228 weas discovered to contain a command injection vulnerability in the NTPSyncWithHost function via the hostTime … Cp900l Firmware Mitigation only Fix from $1,9502024-05-28 HIGH 8.8 CVE-2024-35399 TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a stack overflow via the password parameter in the function loginAuth Cp900l Firmware Mitigation only Fix from $1,9502024-05-28 MEDIUM 5.3 CVE-2024-35400 TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a stack overflow via the desc parameter in the function SetPortForwardRules Cp900l Firmware Mitigation only Fix from $1,6002024-05-28 HIGH 8.8 CVE-2024-35388 TOTOLINK NR1800X v9.1.0u.6681_B20230703 was discovered to contain a stack overflow via the password parameter in the function urldecode Nr1800x Firmware Mitigation only Fix from $1,9502024-05-24 CRITICAL 9.8 CVE-2024-35387EPSS 6% TOTOLINK LR350 V9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the http_host parameter in the function loginAuth. Lr350 Firmware Mitigation only Fix from $2,3002024-05-24 CRITICAL 9.8 CVE-2024-35396 TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a hardcoded password for telnet in /web_cste/cgi-bin/product.ini, which allows attac… Cp900l Firmware Mitigation only Fix from $2,3002024-05-24 HIGH 8.8 CVE-2024-35395 TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a hardcoded password vulnerability in /etc/shadow.sample, which allows attackers to … Cp900l Firmware Mitigation only Fix from $1,9502024-05-24 CRITICAL 9.8 CVE-2024-32353 TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection vulnerability via the 'port' parameter in the setSSServer funct… X5000r Firmware No fix yet Fix from $2,3002024-05-14 HIGH 8.8 CVE-2024-32352 TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an authenticated remote command execution (RCE) vulnerability via the "ipsecL2tpEna… X5000r Firmware No fix yet Fix from $1,9502024-05-14 HIGH 8.0 CVE-2024-32355 TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection vulnerability via the 'password' parameter in the setSSServer f… X5000r Firmware No fix yet Fix from $1,9502024-05-14 MEDIUM 6.0 CVE-2024-32354 TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection vulnerability via the 'timeout' parameter in the setSSServer fu… X5000r Firmware No fix yet Fix from $1,6002024-05-14 HIGH 8.8 CVE-2024-32350 TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an authenticated remote command execution (RCE) vulnerability via the "ipsecPsk" pa… X5000r Firmware No fix yet Fix from $1,9502024-05-14 HIGH 8.8 CVE-2024-32351 TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an authenticated remote command execution (RCE) vulnerability via the "mru" paramet… X5000r Firmware No fix yet Fix from $1,9502024-05-14 MEDIUM 6.0 CVE-2024-32349 TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an authenticated remote command execution (RCE) vulnerability via the "mtu" paramet… X5000r Firmware No fix yet Fix from $1,6002024-05-14 CRITICAL 9.8 CVE-2024-35099 TOTOLINK LR350 V9.3.5u.6698_B20230810 was discovered to contain a stack overflow via the password parameter in the function loginAuth. Lr350 Firmware Mitigation only Fix from $2,3002024-05-14 HIGH 8.8 CVE-2024-34921EPSS 9% TOTOLINK X5000R v9.1.0cu.2350_B20230313 was discovered to contain a command injection via the disconnectVPN function. X5000r Firmware No fix yet Fix from $1,9502024-05-14 HIGH 8.8 CVE-2024-34308 TOTOLINK LR350 V9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the password parameter in the function urldecode. Lr350 Firmware Mitigation only Fix from $1,9502024-05-14 CRITICAL 9.8 CVE-2024-34213 TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the SetPortForwardRules function. Cp450 Firmware No fix yet Fix from $2,3002024-05-14 HIGH 8.6 CVE-2024-34219EPSS 21% TOTOLINK CP450 V4.1.0cu.747_B20191224 was discovered to contain a vulnerability in the SetTelnetCfg function, which allows attackers to log in throug… Cp450 Firmware No fix yet Fix from $1,9502024-05-14 HIGH 7.7 CVE-2024-34217 TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the addWlProfileClientMode function. Cp450 Firmware No fix yet Fix from $1,9502024-05-14 HIGH 7.3 CVE-2024-34212 TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the CloudACMunualUpdate function. Cp450 Firmware No fix yet Fix from $1,9502024-05-14