Vulnerability index

Browse CVEs

1,039 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2025-63469 Totolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the ssid parameter in the sub_421BAC function. This vulnerabilit… Lr350 Firmware No fix yet Fix from $1,9502025-10-31 HIGH 7.5 CVE-2025-63466 Totolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the password parameter in the sub_426EF8 function. This vulnerab… Lr350 Firmware No fix yet Fix from $1,9502025-10-31 HIGH 7.5 CVE-2025-63467 Totolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the ssid parameter in the sub_425400 function. This vulnerabilit… Lr350 Firmware No fix yet Fix from $1,9502025-10-31 HIGH 8.8 CVE-2025-12258 A vulnerability was detected in TOTOLINK A3300R 17.0.0cu.557_B20221024. Impacted is the function setOpModeCfg of the file /cgi-bin/cstecgi.cg of the … A3300r Firmware No fix yet Fix from $1,9502025-10-27 HIGH 8.8 CVE-2025-12259 A flaw has been found in TOTOLINK A3300R 17.0.0cu.557_B20221024. The affected element is the function setScheduleCfg of the file /cgi-bin/cstecgi.cgi… A3300r Firmware No fix yet Fix from $1,9502025-10-27 HIGH 8.8 CVE-2025-12260 A vulnerability has been found in TOTOLINK A3300R 17.0.0cu.557_B20221024. The impacted element is the function setSyslogCfg of the file /cgi-bin/cste… A3300r Firmware No fix yet Fix from $1,9502025-10-27 CRITICAL 9.8 CVE-2025-12239 A weakness has been identified in TOTOLINK A3300R 17.0.0cu.557_B20221024. The impacted element is the function setDdnsCfg of the file /cgi-bin/cstecg… A3300r Firmware Mitigation only Fix from $2,3002025-10-27 CRITICAL 9.8 CVE-2025-12240 A security vulnerability has been detected in TOTOLINK A3300R 17.0.0cu.557_B20221024. This affects the function setDmzCfg of the file /cgi-bin/cstecg… A3300r Firmware Mitigation only Fix from $2,3002025-10-27 HIGH 8.8 CVE-2025-12241 A vulnerability was detected in TOTOLINK A3300R 17.0.0cu.557_B20221024. This impacts the function setLanguageCfg of the file /cgi-bin/cstecgi.cgi of … A3300r Firmware No fix yet Fix from $1,9502025-10-27 HIGH 7.5 CVE-2025-60336 A NULL pointer dereference in the sub_41773C function of TOTOLINK N600R v4.3.0cu.7866_B20220506 allows attackers to cause a Denial of Service (DoS) v… N600r Firmware No fix yet Fix from $1,9502025-10-22 HIGH 7.5 CVE-2025-60335 A NULL pointer dereference in the main function of TOTOLINK N600R v4.3.0cu.7866_B20220506 allows attackers to cause a Denial of Service (DoS) via a c… N600r Firmware No fix yet Fix from $1,9502025-10-22 HIGH 7.5 CVE-2025-60333 TOTOLINK N600R v4.3.0cu.7866_B20220506 was discovered to contain a stack overflow in the wepkey2 parameter in the setWiFiMultipleConfig function. Thi… N600r Firmware No fix yet Fix from $1,9502025-10-22 HIGH 7.5 CVE-2025-60334 TOTOLINK N600R v4.3.0cu.7866_B20220506 was discovered to contain a stack overflow in the ssid parameter in the setWiFiBasicConfig function. This vuln… N600r Firmware No fix yet Fix from $1,9502025-10-22 CRITICAL 9.8 CVE-2025-61044 TOTOLINK X18 V9.1.0cu.2053_B20230309 was discovered to contain a command injection vulnerability via the agentName parameter in the setEasyMeshAgentC… X18 Firmware Mitigation only Fix from $2,3002025-10-01 CRITICAL 9.8 CVE-2025-61045 TOTOLINK X18 V9.1.0cu.2053_B20230309 was discovered to contain a command injection vulnerability via the mac parameter in the setEasyMeshAgentCfg fun… X18 Firmware Mitigation only Fix from $2,3002025-10-01 MEDIUM 5.3 CVE-2025-57623 A NULL pointer dereference in TOTOLINK N600R firmware v4.3.0cu.7866_B2022506 allows attackers to cause a Denial of Service. N600r Firmware No fix yet Fix from $1,6002025-09-25 CRITICAL 9.8 CVE-2025-52053 TOTOLINK X6000R V9.4.0cu.1360_B20241207 was found to contain a command injection vulnerability in the sub_417D74 function via the file_name parameter… X6000r Firmware Mitigation only Fix from $2,3002025-09-15 HIGH 8.0 CVE-2025-57579 An issue in TOTOLINK Wi-Fi 6 Router Series Device X2000R-Gh-V2.0.0 allows a remote attacker to execute arbitrary code via the default password X2000r Firmware No fix yet Fix from $1,9502025-09-12 CRITICAL 9.8 CVE-2025-9934 A vulnerability was found in TOTOLINK X5000R 9.1.0cu.2415_B20250515. This affects the function sub_410C34 of the file /cgi-bin/cstecgi.cgi. Performin… X5000r Firmware Mitigation only Fix from $2,3002025-09-04 CRITICAL 9.8 CVE-2025-9935 A vulnerability was determined in TOTOLINK N600R 4.3.0cu.7866_B20220506. This vulnerability affects the function sub_4159F8 of the file /web_cste/cgi… N600r Firmware Mitigation only Fix from $2,3002025-09-04 HIGH 8.8 CVE-2025-9783 A vulnerability was determined in TOTOLINK A702R 4.0.0-B20211108.1423. This issue affects the function sub_418030 of the file /boafrm/formParentContr… A702r Firmware No fix yet Fix from $1,9502025-09-01 HIGH 8.8 CVE-2025-9782 A vulnerability was found in TOTOLINK A702R 4.0.0-B20211108.1423. This vulnerability affects the function sub_4466F8 of the file /boafrm/formOneKeyAc… A702r Firmware No fix yet Fix from $1,9502025-09-01 HIGH 8.8 CVE-2025-9781 A vulnerability has been found in TOTOLINK A702R 4.0.0-B20211108.1423. This affects the function sub_4162DC of the file /boafrm/formFilter. Such mani… A702r Firmware No fix yet Fix from $1,9502025-09-01 HIGH 8.8 CVE-2025-9779 A vulnerability was detected in TOTOLINK A702R 4.0.0-B20211108.1423. Affected by this vulnerability is the function sub_4162DC of the file /boafrm/fo… A702r Firmware No fix yet Fix from $1,9502025-09-01 HIGH 8.8 CVE-2025-9780 A flaw has been found in TOTOLINK A702R 4.0.0-B20211108.1423. Affected by this issue is the function sub_419BE0 of the file /boafrm/formIpQoS. This m… A702r Firmware No fix yet Fix from $1,9502025-09-01 HIGH 7.0 CVE-2025-9577 A security flaw has been discovered in TOTOLINK X2000R up to 2.0.0. The affected element is an unknown function of the file /etc/shadow.sample of the… X2000r Firmware No fix yet Fix from $1,9502025-08-28 CRITICAL 9.8 CVE-2025-9533EPSS 9% A vulnerability has been found in TOTOLINK T10 4.1.8cu.5241_B20210927. Affected is an unknown function of the file /formLoginAuth.htm. The manipulati… T10 Firmware Mitigation only Fix from $2,3002025-08-27 CRITICAL 9.8 CVE-2025-9303 A security flaw has been discovered in TOTOLINK A720R 4.1.5cu.630_B20250509. This issue affects the function setParentalRules of the file /cgi-bin/cs… A720r Firmware Mitigation only Fix from $2,3002025-08-21 CRITICAL 9.8 CVE-2025-55591EPSS 7% TOTOLINK-A3002R v4.0.0-B20230531.1404 was discovered to contain a command injection vulnerability in the devicemac parameter in the formMapDel endpoi… A3002r Firmware Mitigation only Fix from $2,3002025-08-18 HIGH 7.5 CVE-2025-55588 TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain a buffer overflow in the fw_ip parameter at /boafrm/formPortFw. This vulnerability al… A3002r Firmware No fix yet Fix from $1,9502025-08-18