Vulnerability index

Browse CVEs

1,082 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2024-7158 A vulnerability was found in TOTOLINK A3100R 4.1.2cu.5050_B20200504. It has been declared as critical. This vulnerability affects the function setTel… A3100r Firmware No fix yet Fix from $1,9502024-07-28 HIGH 8.8 CVE-2024-7157EPSS 7% A vulnerability was found in TOTOLINK A3100R 4.1.2cu.5050_B20200504. It has been classified as critical. This affects the function getSaveConfig of t… A3100r Firmware No fix yet Fix from $1,9502024-07-28 HIGH 7.5 CVE-2024-7156EPSS 13% A vulnerability was found in TOTOLINK A3700R 9.1.2u.5822_B20200513 and classified as problematic. Affected by this issue is some unknown functionalit… A3700r Firmware No fix yet Fix from $1,9502024-07-28 HIGH 7.5 CVE-2024-7154 A vulnerability, which was classified as problematic, was found in TOTOLINK A3700R 9.1.2u.5822_B20200513. Affected is an unknown function of the file… A3700r Firmware No fix yet Fix from $1,9502024-07-28 CRITICAL 9.8 CVE-2024-41319EPSS 6% TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the cmd parameter in the webcmd function. A6000r Firmware No fix yet Fix from $2,3002024-07-23 CRITICAL 9.8 CVE-2024-41316 TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_cancel_wps fu… A6000r Firmware No fix yet Fix from $2,3002024-07-22 CRITICAL 9.8 CVE-2024-41318 TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_wps_gen_pinco… A6000r Firmware No fix yet Fix from $2,3002024-07-22 HIGH 8.8 CVE-2024-41320 TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the ifname parameter in the get_apcli_conn_info… A6000r Firmware No fix yet Fix from $1,9502024-07-22 HIGH 8.0 CVE-2024-41317 TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_do_enr_pbc_wp… A6000r Firmware No fix yet Fix from $1,9502024-07-22 MEDIUM 6.8 CVE-2024-41314 TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the iface parameter in the vif_disable function. A6000r Firmware No fix yet Fix from $1,6002024-07-22 MEDIUM 6.8 CVE-2024-41315 TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_do_enr_pin_wp… A6000r Firmware No fix yet Fix from $1,6002024-07-22 HIGH 8.8 CVE-2024-37626 A command injection issue in TOTOLINK A6000R V1.0.1-B20201211.2000 firmware allows a remote attacker to execute arbitrary code via the iface paramete… A6000r Firmware Mitigation only Fix from $1,9502024-06-20 HIGH 8.8 CVE-2024-37640 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid5g in the function setWiFiEasyGuestCfg. A3700r Firmware No fix yet Fix from $1,9502024-06-14 CRITICAL 9.8 CVE-2024-37637 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid5g in the function setWizardCfg. A3700r Firmware No fix yet Fix from $2,3002024-06-14 HIGH 8.8 CVE-2024-37639 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via eport in the function setIpPortFilterRules. A3700r Firmware No fix yet Fix from $1,9502024-06-14 CRITICAL 9.8 CVE-2024-37632 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via the password parameter in function loginAuth . A3700r Firmware No fix yet Fix from $2,3002024-06-13 CRITICAL 9.8 CVE-2024-37634 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid in the function setWiFiEasyCfg. A3700r Firmware No fix yet Fix from $2,3002024-06-13 CRITICAL 9.8 CVE-2024-37635 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid in the function setWiFiBasicCfg A3700r Firmware No fix yet Fix from $2,3002024-06-13 HIGH 8.8 CVE-2024-37631 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via the File parameter in function UploadCustomModule. A3700r Firmware No fix yet Fix from $1,9502024-06-13 HIGH 8.8 CVE-2024-37633 TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid in the function setWiFiGuestCfg A3700r Firmware No fix yet Fix from $1,9502024-06-13 HIGH 7.5 CVE-2024-36650 TOTOLINK AC1200 Wireless Dual Band Gigabit Router firmware A3100R V4.1.2cu.5247_B20211129, in the cgi function `setNoticeCfg` of the file `/lib/cste_… A3100r Firmware No fix yet Fix from $1,9502024-06-11 CRITICAL 9.8 CVE-2024-36782 TOTOLINK CP300 V2.0.4-B20201102 was discovered to contain a hardcoded password vulnerability in /etc/shadow.sample, which allows attackers to log in … Cp300 Firmware Mitigation only Fix from $2,3002024-06-03 CRITICAL 9.8 CVE-2024-36783 TOTOLINK LR350 V9.3.5u.6369_B20220309 was discovered to contain a command injection via the host_time parameter in the NTPSyncWithHost function. Lr350 Firmware Mitigation only Fix from $2,3002024-06-03 MEDIUM 5.9 CVE-2024-35401 TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a command injection vulnerability via the FileName parameter in the UploadFirmwareFi… Cp900l Firmware Mitigation only Fix from $1,6002024-05-28 CRITICAL 9.8 CVE-2024-35398 TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a stack overflow via the desc parameter in the function setMacFilterRules. Cp900l Firmware Mitigation only Fix from $2,3002024-05-28 HIGH 8.8 CVE-2024-35397EPSS 15% TOTOLINK CP900L v4.1.5cu.798_B20221228 weas discovered to contain a command injection vulnerability in the NTPSyncWithHost function via the hostTime … Cp900l Firmware Mitigation only Fix from $1,9502024-05-28 HIGH 8.8 CVE-2024-35399 TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a stack overflow via the password parameter in the function loginAuth Cp900l Firmware Mitigation only Fix from $1,9502024-05-28 MEDIUM 5.3 CVE-2024-35400 TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a stack overflow via the desc parameter in the function SetPortForwardRules Cp900l Firmware Mitigation only Fix from $1,6002024-05-28 HIGH 8.8 CVE-2024-35388 TOTOLINK NR1800X v9.1.0u.6681_B20230703 was discovered to contain a stack overflow via the password parameter in the function urldecode Nr1800x Firmware Mitigation only Fix from $1,9502024-05-24 CRITICAL 9.8 CVE-2024-35387EPSS 6% TOTOLINK LR350 V9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the http_host parameter in the function loginAuth. Lr350 Firmware Mitigation only Fix from $2,3002024-05-24