202 Total CVEs
200 AI Analyzed
0 CISA KEV
105 Critical
All Vendors
Showing 1-202 of 202 CVEs
CVE-2026-9543
Analyzed
9.8
TOTOLINK N300RH

The Totolink N300RH web management interface contains an OS command injection vulnerability in the `setPasswordCfg` function.

2026-05-27
CVE-2026-85031
Analyzed
9.9
TOTOLINK CP450

A buffer overflow vulnerability in the TOTOLINK CP450 /cgi-bin/cstecgi.cgi file allows authenticated remote attackers to execute arbitrary code via th...

2026-09-03
CVE-2026-82616
Analyzed
9.9
TOTOLINK NR1800X

A stack-based buffer overflow in the setUploadSetting function of the TOTOLINK NR1800X allows remote attackers to execute arbitrary code via the FileN...

2026-08-31
CVE-2026-82597
Analyzed
7.4
TOTOLINK NR1800X

A vulnerability was identified in TOTOLINK NR1800X 9.1.0u.6681_B20230703. This affects the function setUssd of the file /cgi-bin/cstecgi.cgi. The mani...

2026-08-31
CVE-2026-82539
Analyzed
9.1
TOTOLINK A720R

A stack-based buffer overflow in the TOTOLINK A720R cstecgi.cgi binary allows an authenticated administrator to achieve remote code execution via a cr...

2026-08-31
CVE-2026-8137
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability has been found in Totolink X5000R 9

2026-05-08
CVE-2026-79912
Analyzed
8.3
TOTOLINK N600R

A vulnerability was detected in TOTOLINK N600R 4

2026-08-26
CVE-2026-79911
Analyzed
10
TOTOLINK N600R

The TOTOLINK N600R router contains a stack-based buffer overflow in the setSystemConfig function, allowing remote attackers to execute arbitrary code...

2026-08-26
CVE-2026-7823
Analyzed
9.8
TOTOLINK A8000RU

A remote OS command injection vulnerability in the Totolink A8000RU allows unauthenticated attackers to execute arbitrary commands via the `setAppFilt...

2026-05-05
CVE-2026-7750
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was detected in Totolink N300RH 3

2026-05-05
CVE-2026-7749
Analyzed
8.8
TOTOLINK Multiple Products

A security vulnerability has been detected in Totolink N300RH 3

2026-05-05
CVE-2026-7748
Analyzed
8.8
TOTOLINK Multiple Products

A weakness has been identified in Totolink N300RH 3

2026-05-05
CVE-2026-7747
Analyzed
9.8
TOTOLINK N300RH

A remote buffer overflow vulnerability in the Totolink N300RH login authentication function allows attackers to crash the system or execute arbitrary...

2026-05-05
CVE-2026-7719
Analyzed
9.8
TOTOLINK WA300

A buffer overflow vulnerability in the Totolink WA300 loginauth function allows remote attackers to execute arbitrary code via a manipulated http_host...

2026-05-04
CVE-2026-7717
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was determined in Totolink WA300 5

2026-05-04
CVE-2026-7548
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was detected in Totolink NR1800X 9

2026-05-01
CVE-2026-7546
Analyzed
9.8
TOTOLINK NR1800X

A stack-based buffer overflow exists in the Totolink NR1800X lighttpd component, allowing remote attackers to trigger a crash or execute code via the...

2026-05-01
CVE-2026-7538
Analyzed
9.8
TOTOLINK A8000RU

The Totolink A8000RU router is vulnerable to remote OS command injection via the proto parameter in the CGI handler, allowing unauthenticated attacker...

2026-05-01
CVE-2026-7244
Analyzed
9.8
TOTOLINK A8000RU

A remote OS command injection vulnerability in the Totolink A8000RU CGI handler is reachable via the setWiFiEasyGuestCfg function's merge argument.

2026-04-29
CVE-2026-7243
Analyzed
9.8
TOTOLINK A8000RU

The Totolink A8000RU is susceptible to remote OS command injection in the setRadvdCfg function, reachable via the maxRtrAdvInterval argument.

2026-04-29
CVE-2026-7242
Analyzed
9.8
TOTOLINK A8000RU

A remote OS command injection vulnerability in the Totolink A8000RU CGI handler is accessible via the setOpenVpnClientCfg function's enabled argument.

2026-04-29
CVE-2026-7241
Analyzed
9.8
TOTOLINK A8000RU

The Totolink A8000RU is vulnerable to remote OS command injection via the setWiFiBasicCfg function, triggered by the wifiOff argument.

2026-04-29
CVE-2026-7240
Analyzed
9.8
TOTOLINK Multiple Products

A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setVpnAccountCfg of the file /cgi-bin/...

2026-04-28
CVE-2026-7204
Analyzed
9.8
TOTOLINK Multiple Products

A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setPptpServerCfg of the file /cgi-bin/cstecgi....

2026-04-28
CVE-2026-7203
Analyzed
9.8
TOTOLINK Multiple Products

A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setUrlFilterRules of the file /cgi-bin/cste...

2026-04-28
CVE-2026-7202
Analyzed
9.8
TOTOLINK Multiple Products

A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setWiFiWpsStart of the file /cgi-bin/cstecgi.cgi of...

2026-04-28
CVE-2026-7156
Analyzed
9.8
TOTOLINK Multiple Products

A vulnerability was detected in Totolink A8000RU 7.1cu.643_b20200521. Affected is the function CsteSystem of the file /cgi-bin/cstecgi.cgi of the comp...

2026-04-28
CVE-2026-7155
Analyzed
9.8
TOTOLINK A8000RU

An OS command injection vulnerability in the Totolink A8000RU CGI handler allows unauthenticated remote attackers to execute arbitrary system commands...

2026-04-28
CVE-2026-7154
Analyzed
9.8
TOTOLINK A8000RU

An OS command injection vulnerability in the Totolink A8000RU CGI handler allows unauthenticated remote attackers to execute arbitrary system commands...

2026-04-28
CVE-2026-7153
Analyzed
9.8
TOTOLINK A8000RU

An OS command injection vulnerability in the Totolink A8000RU CGI handler allows unauthenticated remote attackers to execute arbitrary system commands...

2026-04-28
CVE-2026-7152
Analyzed
9.8
TOTOLINK A8000RU

An OS command injection vulnerability in the Totolink A8000RU CGI handler allows unauthenticated remote attackers to execute arbitrary commands by man...

2026-04-28
CVE-2026-7140
Analyzed
9.8
TOTOLINK A8000RU

An OS command injection vulnerability exists in the Totolink A8000RU CGI handler, allowing unauthenticated remote attackers to execute arbitrary syste...

2026-04-28
CVE-2026-7139
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability exists in the Totolink A8000RU CGI handler via the mode parameter in the setWiFiAclRules...

2026-04-28
CVE-2026-7138
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability exists in the Totolink A8000RU CGI handler via the tz parameter in the setNtpCfg function...

2026-04-28
CVE-2026-7137
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability exists in the Totolink A8000RU CGI handler via the sambaEnabled parameter in the setStora...

2026-04-28
CVE-2026-7136
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability exists in the Totolink A8000RU CGI handler via the wanIdx parameter in the setDmzCfg func...

2026-04-28
CVE-2026-7125
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability exists in the Totolink A8000RU CGI handler via the merge parameter in the setWiFiEasyCfg...

2026-04-28
CVE-2026-7124
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability exists in the Totolink A8000RU CGI handler via the addrPrefixLen parameter in the setIpv6...

2026-04-28
CVE-2026-7123
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability in the Totolink A8000RU CGI handler occurs via the setIptvCfg function.

2026-04-28
CVE-2026-7122
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability exists in the Totolink A8000RU CGI handler via the enable parameter in the setUPnPCfg fun...

2026-04-28
CVE-2026-7121
Analyzed
9.8
TOTOLINK A8000RU

A remote OS command injection vulnerability in the Totolink A8000RU CGI handler allows unauthenticated attackers to execute arbitrary commands via the...

2026-04-28
CVE-2026-7037
Analyzed
9.8
TOTOLINK A8000RU

A remote OS command injection vulnerability exists in the Totolink A8000RU router via the pptpPassThru argument in the setVpnPassCfg function.

2026-04-27
CVE-2026-6195
Analyzed
9.8
TOTOLINK Multiple Products

A security vulnerability has been detected in Totolink A7100RU 7.4cu.2313_b20191024. Affected by this issue is the function setPasswordCfg of the file...

2026-04-14
CVE-2026-6194
Analyzed
8.8
TOTOLINK Multiple Products

A weakness has been identified in Totolink A3002MU B20211125

2026-04-14
CVE-2026-6168
Analyzed
8.8
TOTOLINK Multiple Products

A flaw has been found in TOTOLINK A7000R up to 9

2026-04-13
CVE-2026-6158
Analyzed
7.3
TOTOLINK Multiple Products

A flaw has been found in Totolink N300RH 6

2026-04-13
CVE-2026-6157
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was detected in Totolink A800R 4

2026-04-13
CVE-2026-6156
Analyzed
9.8
TOTOLINK A7100RU

Totolink A7100RU allows remote OS command injection via the setIpQosRules function in the CGI handler.

2026-04-13
CVE-2026-6155
Analyzed
9.8
TOTOLINK A7100RU

Totolink A7100RU is vulnerable to remote OS command injection via the setWanCfg function in the CGI handler.

2026-04-13
CVE-2026-6154
Analyzed
9.8
TOTOLINK A7100RU

Totolink A7100RU allows remote OS command injection via the setWizardCfg function within the CGI handler.

2026-04-13
CVE-2026-6140
Analyzed
9.8
TOTOLINK A7100RU

Totolink A7100RU is susceptible to remote OS command injection via the UploadFirmwareFile function in the CGI handler.

2026-04-13
CVE-2026-6139
Analyzed
9.8
TOTOLINK A7100RU

Totolink A7100RU contains an OS command injection vulnerability in the UploadOpenVpnCert function of the CGI handler.

2026-04-13
CVE-2026-6138
Analyzed
9.8
TOTOLINK A7100RU

Totolink A7100RU is vulnerable to remote OS command injection via the setAccessDeviceCfg function in the CGI handler.

2026-04-13
CVE-2026-6132
Analyzed
9.8
TOTOLINK A7100RU

Totolink A7100RU allows remote unauthenticated attackers to execute arbitrary OS commands via the setLedCfg function in the CGI handler.

2026-04-13
CVE-2026-6131
Analyzed
9.8
TOTOLINK Totolink A7100RU

Acer Totolink A7100RU is vulnerable to remote OS command injection via the setTracerouteCfg function in the CGI handler.

2026-04-13
CVE-2026-6116
Analyzed
9.8
TOTOLINK A7100RU

A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler via the ip argument.

2026-04-12
CVE-2026-6115
Analyzed
9.8
TOTOLINK A7100RU

A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler via the enable argument.

2026-04-12
CVE-2026-6114
Analyzed
9.8
TOTOLINK A7100RU

A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler via the proto argument.

2026-04-12
CVE-2026-6113
Analyzed
9.8
TOTOLINK A7100RU

A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler via the ttyEnable argument.

2026-04-12
CVE-2026-6112
Analyzed
9.8
TOTOLINK A7100RU

A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler via the maxRtrAdvInterval argument.

2026-04-12
CVE-2026-6029
Analyzed
9.8
TOTOLINK Multiple Products

A vulnerability was detected in Totolink A7100RU 7.4cu.2313_b20191024. The affected element is the function setVpnAccountCfg of the file /cgi-bin/cste...

2026-04-10
CVE-2026-6028
Analyzed
9.8
TOTOLINK Multiple Products

A security vulnerability has been detected in Totolink A7100RU 7.4cu.2313_b20191024. Impacted is the function setPptpServerCfg of the file /cgi-bin/cs...

2026-04-10
CVE-2026-6027
Analyzed
9.8
TOTOLINK A7100RU

A remote OS command injection vulnerability in the Totolink A7100RU CGI handler allows unauthenticated remote attackers to execute commands via the en...

2026-04-10
CVE-2026-6026
Analyzed
9.8
TOTOLINK A7100RU

A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler, allowing unauthenticated attackers to execute commands via the...

2026-04-10
CVE-2026-6025
Analyzed
9.8
TOTOLINK A7100RU

An OS command injection vulnerability in the Totolink A7100RU CGI handler allows unauthenticated remote attackers to execute arbitrary commands via th...

2026-04-10
CVE-2026-5997
Analyzed
9.8
TOTOLINK A7100RU

A remote OS command injection vulnerability in the Totolink A7100RU CGI handler allows unauthenticated attackers to execute arbitrary system commands...

2026-04-10
CVE-2026-5996
Analyzed
9.8
TOTOLINK A7100RU

A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler, allowing unauthenticated attackers to execute arbitrary system...

2026-04-10
CVE-2026-5995
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setMiniuiHomeInfoShow function, allowing remote attackers to ex...

2026-04-10
CVE-2026-5994
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setTelnetCfg function, allowing remote attackers to execute arb...

2026-04-10
CVE-2026-5993
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setWiFiGuestCfg function, allowing remote attackers to execute...

2026-04-10
CVE-2026-5978
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setWiFiAclRules function, allowing remote attackers to execute...

2026-04-10
CVE-2026-5977
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setWiFiBasicCfg function, allowing remote attackers to execute...

2026-04-10
CVE-2026-5976
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setStorageCfg function, allowing remote attackers to execute ar...

2026-04-10
CVE-2026-5975
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setDmzCfg function, allowing remote attackers to execute arbitr...

2026-04-10
CVE-2026-5854
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU is susceptible to remote OS command injection via the setWiFiEasyCfg function, specifically through the merge argument in the CGI...

2026-04-09
CVE-2026-5853
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU is vulnerable to remote OS command injection via the setIpv6LanCfg function, exploitable through the addrPrefixLen argument in th...

2026-04-09
CVE-2026-5852
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU allows remote OS command injection via the setIptvCfg function by manipulating the igmpVer argument in the CGI handler.

2026-04-09
CVE-2026-5851
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU is susceptible to remote OS command injection via the setUPnPCfg function, specifically through the enable parameter in the CGI h...

2026-04-09
CVE-2026-5850
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU contains an OS command injection vulnerability in the setVpnPassCfg function, allowing remote attackers to execute arbitrary syst...

2026-04-09
CVE-2026-5176
Analyzed
7.3
TOTOLINK Multiple Products

A security flaw has been discovered in Totolink A3300R 17

2026-03-31
CVE-2026-51743
Analyzed
9.1
TOTOLINK T6

An access control flaw in the TOTOLINK T6 guest_wifi_sync function allows unauthenticated attackers to disable guest virtual AP interfaces using craft...

2026-09-02
CVE-2026-51730
Analyzed
9.1
TOTOLINK T6

TOTOLINK T6 routers contain an incorrect access control vulnerability in the delWiFiAclRules function, allowing unauthenticated attackers to remove Wi...

2026-09-01
CVE-2026-51729
Analyzed
9.1
TOTOLINK T6

An access control flaw in the TOTOLINK T6 delDevice function allows unauthenticated attackers to delete managed slave devices via crafted POST request...

2026-09-04
CVE-2026-51725
Analyzed
9.1
TOTOLINK T6

An incorrect access control vulnerability in the TOTOLINK T6 NTPSyncWithHost function allows unauthenticated attackers to modify the system clock via...

2026-09-01
CVE-2026-51722
Analyzed
9.1
TOTOLINK T6

An unauthenticated access control vulnerability in the TOTOLINK T6 router allows attackers to redirect device traffic to an upstream Wi-Fi network via...

2026-09-04
CVE-2026-51721
Analyzed
9.1
TOTOLINK T6

An improper access control vulnerability in TOTOLINK T6 allows unauthenticated attackers to modify mesh pairing configurations via a crafted POST requ...

2026-09-04
CVE-2026-51720
Analyzed
9.1
TOTOLINK T6

An incorrect access control vulnerability in the TOTOLINK T6 router allows unauthenticated remote attackers to delete firewall filter rules via a craf...

2026-09-01
CVE-2026-51719
Analyzed
7.5
TOTOLINK T6

Incorrect access control in the delUrlFilterRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to remove URL filteri...

2026-09-04
CVE-2026-51717
Analyzed
9.1
TOTOLINK T6

An access control vulnerability in TOTOLINK T6 allows unauthenticated attackers to modify the device operating mode via a crafted POST request to the...

2026-09-04
CVE-2026-51715
Analyzed
9.8
TOTOLINK T6

An access control flaw in the TOTOLINK T6 router allows unauthenticated attackers to delete MAC filter rules by sending a malicious POST request to a...

2026-09-04
CVE-2026-51713
Analyzed
9.1
TOTOLINK T6

An improper access control flaw in TOTOLINK T6 allows unauthenticated attackers to manipulate WAN dial settings via crafted POST requests to the devic...

2026-09-04
CVE-2026-51711
Analyzed
9.1
TOTOLINK T6

An incorrect access control vulnerability in the TOTOLINK T6 router allows unauthenticated attackers to trigger a wireless pairing window via a crafte...

2026-09-04
CVE-2026-51710
Analyzed
9.1
TOTOLINK T6

TOTOLINK T6 routers contain an incorrect access control vulnerability in the setParentalRules function, allowing unauthenticated attackers to modify p...

2026-09-04
CVE-2026-51709
Analyzed
9.8
TOTOLINK T6

An incorrect access control vulnerability in TOTOLINK T6 allows unauthenticated attackers to reconfigure Wi-Fi settings via a crafted POST request.

2026-09-04
CVE-2026-51708
Analyzed
9.8
TOTOLINK T6

An improper access control flaw in the TOTOLINK T6 router allows unauthenticated remote attackers to modify WPS settings via a crafted POST request to...

2026-09-04
CVE-2026-51700
Analyzed
9.1
TOTOLINK T6

An access control flaw in the TOTOLINK T6 router allows unauthenticated attackers to modify wireless configuration settings via a crafted POST request...

2026-09-04
CVE-2026-51698
Analyzed
9.1
TOTOLINK T6

An incorrect access control vulnerability in the TOTOLINK T6 router allows unauthenticated attackers to modify browsing policies via crafted POST requ...

2026-09-04
CVE-2026-51681
Analyzed
9.1
TOTOLINK T6

An access control vulnerability in TOTOLINK T6 allows unauthenticated attackers to enable WAN-side administration via a crafted POST request to the cg...

2026-09-01
CVE-2026-51680
Analyzed
9.1
TOTOLINK T6

An incorrect access control flaw in the TOTOLINK T6 router allows unauthenticated attackers to modify device LED settings via a crafted POST request t...

2026-09-01
CVE-2026-51679
Analyzed
9.1
TOTOLINK T6

An incorrect access control vulnerability in the TOTOLINK T6 setPasswordCfg function allows unauthenticated attackers to modify administrator account...

2026-09-01
CVE-2026-51676
Analyzed
9.1
TOTOLINK T6

An incorrect access control vulnerability in the TOTOLINK T6 router allows unauthenticated attackers to modify access device policies via a crafted PO...

2026-09-04
CVE-2026-51674
Analyzed
9.8
TOTOLINK T6

An access control vulnerability in the TOTOLINK T6 router allows unauthenticated attackers to trigger forced reboots by sending a crafted POST request...

2026-09-04
CVE-2026-51650
Analyzed
7.5
TOTOLINK T6

Incorrect access control in the getRemoteCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to obtain remote-managemen...

2026-09-04
CVE-2026-4976
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was found in Totolink LR350 9

2026-03-28
CVE-2026-4497
Analyzed
7.3
TOTOLINK Multiple Products

A vulnerability was determined in Totolink WA300 5

2026-03-22
CVE-2026-44089
Analyzed
9.4
TOTOLINK EX1200L

The Totolink EX1200L router contains a buffer overflow in the login functionality, allowing unauthenticated remote attackers to execute arbitrary code...

2026-06-24
CVE-2026-3696
Analyzed
7.3
TOTOLINK Multiple Products

A vulnerability was found in Totolink N300RH 6

2026-03-08
CVE-2026-36841
Analyzed
9.8
TOTOLINK N200RE V5

A command injection vulnerability in the TOTOLINK N200RE V5 router allows remote code execution via specifically crafted parameters in the formMapDelD...

2026-04-30
CVE-2026-36837
Analyzed
7.5
TOTOLINK Multiple Products

TOTOLINK A3002RU V3 <= V3

2026-04-30
CVE-2026-3301
Analyzed
9.8
TOTOLINK N300RH

A remote OS command injection vulnerability exists in the Totolink N300RH Web Management Interface due to improper handling of the webWlanIdx paramete...

2026-02-27
CVE-2026-31181
Analyzed
9.8
TOTOLINK Multiple Products

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stunServerAddr pa...

2026-04-24
CVE-2026-31178
Analyzed
9.8
TOTOLINK A3300R

The ToToLink A3300R firmware contains a command injection vulnerability in the stunMaxAlive parameter, allowing unauthenticated remote code execution.

2026-04-24
CVE-2026-31177
Analyzed
9.8
TOTOLINK A3300R

The ToToLink A3300R firmware contains a command injection vulnerability in the stunMinAlive parameter, allowing unauthenticated remote code execution.

2026-04-24
CVE-2026-31175
Analyzed
9.8
TOTOLINK A3300R

The ToToLink A3300R firmware contains a command injection vulnerability in the stunEnable parameter, allowing unauthenticated remote code execution.

2026-04-24
CVE-2026-31027
Analyzed
9.8
TOTOLINK Multiple Products

TOTOlink A3600R v5.9c.4959 contains a buffer overflow vulnerability in the setAppEasyWizardConfig interface of /lib/cste_modules/app.so. The vulnerabi...

2026-04-02
CVE-2026-19847
Analyzed
8.8
TOTOLINK A800R

A security flaw has been discovered in TOTOLINK A800R 4

2026-08-15
CVE-2026-19846
Analyzed
8.8
TOTOLINK A800R

A vulnerability was identified in TOTOLINK A800R 4

2026-08-15
CVE-2026-19845
Analyzed
8.8
TOTOLINK A800R

A vulnerability was determined in TOTOLINK A800R 4

2026-08-15
CVE-2026-19844
Analyzed
8.8
TOTOLINK A800R

A vulnerability was found in TOTOLINK A800R 4

2026-08-15
CVE-2026-19815
Analyzed
8.8
TOTOLINK A800R

A flaw has been found in TOTOLINK A800R 4

2026-08-14
CVE-2026-19814
Analyzed
8.8
TOTOLINK A800R

A vulnerability was detected in TOTOLINK A800R 4

2026-08-14
CVE-2026-19813
Analyzed
8.8
TOTOLINK A800R

A security vulnerability has been detected in TOTOLINK A800R 4

2026-08-14
CVE-2026-19812
Analyzed
8.8
TOTOLINK A800R

A weakness has been identified in TOTOLINK A800R 4

2026-08-14
CVE-2026-19811
Analyzed
8.8
TOTOLINK A800R

A security flaw has been discovered in TOTOLINK A800R 4

2026-08-14
CVE-2026-1686
Analyzed
8.8
TOTOLINK Multiple Products

A security flaw has been discovered in Totolink A3600R 5

2026-01-31
CVE-2026-15701
Analyzed
9.8
TOTOLINK NR1800X

The Totolink NR1800X router contains a stack-based buffer overflow vulnerability in the lighttpd component, allowing for remote code execution.

2026-07-15
CVE-2026-1328
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was detected in Totolink NR1800X 9

2026-01-23
CVE-2026-1158
Analyzed
8.8
TOTOLINK Multiple Products

A security flaw has been discovered in Totolink LR350 9

2026-01-20
CVE-2026-1157
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was identified in Totolink LR350 9

2026-01-20
CVE-2026-1156
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was determined in Totolink LR350 9

2026-01-20
CVE-2026-1155
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was found in Totolink LR350 9

2026-01-20
CVE-2026-1143
Analyzed
8.8
TOTOLINK Multiple Products

A weakness has been identified in TOTOLINK A3700R 9

2026-01-19
CVE-2026-10187
Analyzed
9.8
TOTOLINK N300RH

A stack-based buffer overflow in the Totolink N300RH web management interface allows remote attackers to execute arbitrary code via the KeyStr argumen...

2026-06-01
CVE-2025-9935
Analyzed
7.3
TOTOLINK Multiple Products

A vulnerability was determined in TOTOLINK N600R 4

2025-09-04
CVE-2025-9783
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was determined in TOTOLINK A702R 4

2025-09-02
CVE-2025-9782
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was found in TOTOLINK A702R 4

2025-09-02
CVE-2025-9781
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability has been found in TOTOLINK A702R 4

2025-09-02
CVE-2025-9780
Analyzed
8.8
TOTOLINK Multiple Products

A flaw has been found in TOTOLINK A702R 4

2025-09-02
CVE-2025-9779
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was detected in TOTOLINK A702R 4

2025-09-02
CVE-2025-9533
Analyzed
7.3
TOTOLINK Multiple Products

A vulnerability has been found in TOTOLINK T10 4

2025-08-27
CVE-2025-9303
Analyzed
8.8
TOTOLINK Multiple Products

A security flaw has been discovered in TOTOLINK A720R 4

2025-08-21
CVE-2025-8246
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was found in TOTOLINK X15 1

2025-07-28
CVE-2025-8245
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was found in TOTOLINK X15 1

2025-07-28
CVE-2025-8244
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was found in TOTOLINK X15 1

2025-07-28
CVE-2025-8243
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was found in TOTOLINK X15 1

2025-07-28
CVE-2025-8242
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability has been found in TOTOLINK X15 1

2025-07-28
CVE-2025-8181
7.2
TOTOLINK Multiple Products

A vulnerability, which was classified as critical, was found in TOTOLINK N600R and X2000R 1

2025-07-28
CVE-2025-7913
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability, which was classified as critical, was found in TOTOLINK T6 4

2025-07-21
CVE-2025-7912
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability, which was classified as critical, has been found in TOTOLINK T6 4

2025-07-21
CVE-2025-7862
Analyzed
7.3
TOTOLINK Multiple Products

A vulnerability has been found in TOTOLINK T6 4

2025-07-21
CVE-2025-7837
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was found in TOTOLINK T6 4

2025-07-21
CVE-2025-7758
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability, which was classified as critical, has been found in TOTOLINK T6 up to 4

2025-07-17
CVE-2025-70329
Analyzed
8
TOTOLINK Multiple Products

TOTOLink X5000R v9

2026-02-24
CVE-2025-6953
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability, which was classified as critical, was found in TOTOLINK A3002RU 3

2025-07-06
CVE-2025-6940
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability classified as critical was found in TOTOLINK A702R 4

2025-07-06
CVE-2025-6939
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability classified as critical has been found in TOTOLINK A3002RU 3

2025-07-06
CVE-2025-6916
8.8
TOTOLINK Multiple Products

A vulnerability, which was classified as critical, was found in TOTOLINK T6 4

2025-07-06
CVE-2025-67445
Analyzed
7.5
TOTOLINK Multiple Products

TOTOLINK X5000R V9

2026-02-26
CVE-2025-63469
Analyzed
7.5
TOTOLINK Multiple Products

Totolink LR350 v9

2025-10-31
CVE-2025-63468
Analyzed
7.5
TOTOLINK Multiple Products

Totolink LR350 v9

2025-10-31
CVE-2025-63465
Analyzed
7.5
TOTOLINK Multiple Products

Totolink LR350 v9

2025-10-31
CVE-2025-63464
Analyzed
7.5
TOTOLINK Multiple Products

Totolink LR350 v9

2025-10-31
CVE-2025-6302
Analyzed
8.8
TOTOLINK EX1200T

A vulnerability, which was classified as critical, was found in TOTOLINK EX1200T 4

2026-06-19
CVE-2025-6165
Analyzed
8.8
TOTOLINK X15

A vulnerability was found in TOTOLINK X15 1

2026-06-19
CVE-2025-6164
Analyzed
8.8
TOTOLINK A3002R

A vulnerability was found in TOTOLINK A3002R 4

2026-06-19
CVE-2025-6163
Analyzed
8.8
TOTOLINK A3002RU

A vulnerability was found in TOTOLINK A3002RU 3

2026-06-19
CVE-2025-6162
Analyzed
8.8
TOTOLINK EX1200T

A vulnerability has been found in TOTOLINK EX1200T 4

2026-06-19
CVE-2025-6150
Analyzed
8.8
TOTOLINK X15

A vulnerability classified as critical was found in TOTOLINK X15 1

2026-06-19
CVE-2025-6149
Analyzed
8.8
TOTOLINK A3002R

A vulnerability classified as critical has been found in TOTOLINK A3002R 4

2026-06-19
CVE-2025-6148
Analyzed
8.8
TOTOLINK A3002RU

A vulnerability was found in TOTOLINK A3002RU 3

2026-06-19
CVE-2025-6147
Analyzed
8.8
TOTOLINK A702R

A vulnerability was found in TOTOLINK A702R 4

2026-06-19
CVE-2025-6146
Analyzed
8.8
TOTOLINK X15

A vulnerability was found in TOTOLINK X15 1

2026-06-19
CVE-2025-6145
Analyzed
8.8
TOTOLINK EX1200T

A vulnerability was found in TOTOLINK EX1200T 4

2026-06-19
CVE-2025-6144
Analyzed
8.8
TOTOLINK EX1200T

A vulnerability has been found in TOTOLINK EX1200T 4

2026-06-19
CVE-2025-6143
Analyzed
8.8
TOTOLINK EX1200T

A vulnerability, which was classified as critical, was found in TOTOLINK EX1200T 4

2026-06-19
CVE-2025-6138
Analyzed
8.8
TOTOLINK T10

A vulnerability classified as critical was found in TOTOLINK T10 4

2026-06-19
CVE-2025-6137
Analyzed
8.8
TOTOLINK T10

A vulnerability classified as critical has been found in TOTOLINK T10 4

2026-06-19
CVE-2025-6130
Analyzed
8.8
TOTOLINK EX1200T

A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4

2026-06-19
CVE-2025-6129
Analyzed
8.8
TOTOLINK EX1200T

A vulnerability classified as critical was found in TOTOLINK EX1200T 4

2026-06-19
CVE-2025-6128
Analyzed
8.8
TOTOLINK EX1200T

A vulnerability classified as critical has been found in TOTOLINK EX1200T 4

2026-06-19
CVE-2025-60336
Analyzed
7.5
TOTOLINK Multiple Products

A NULL pointer dereference in the sub_41773C function of TOTOLINK N600R v4

2025-10-23
CVE-2025-60335
Analyzed
7.5
TOTOLINK Multiple Products

A NULL pointer dereference in the main function of TOTOLINK N600R v4

2025-10-23
CVE-2025-60334
Analyzed
7.5
TOTOLINK Multiple Products

TOTOLINK N600R v4

2025-10-23
CVE-2025-60333
Analyzed
7.5
TOTOLINK Multiple Products

TOTOLINK N600R v4

2025-10-23
CVE-2025-57579
Analyzed
8
TOTOLINK Multiple Products

An issue in TOTOLINK Wi-Fi 6 Router Series Device X2000R-Gh-V2

2025-09-12
CVE-2025-55591
Analyzed
9.8
TOTOLINK Multiple Products

TOTOLINK-A3002R v4.0.0-B20230531.1404 was discovered to contain a command injection vulnerability in the devicemac parameter in the formMapDel endpoin...

2025-08-19
CVE-2025-55588
Analyzed
7.5
TOTOLINK Multiple Products

TOTOLINK A3002R v4

2025-08-19
CVE-2025-55587
Analyzed
7.5
TOTOLINK Multiple Products

TOTOLINK A3002R v4

2025-08-19
CVE-2025-55586
Analyzed
7.5
TOTOLINK Multiple Products

TOTOLINK A3002R v4

2025-08-19
CVE-2025-52053
Analyzed
9.8
TOTOLINK Multiple Products

TOTOLINK X6000R V9.4.0cu.1360_B20241207 was found to contain a command injection vulnerability in the sub_417D74 function via the file_name parameter....

2025-09-15
CVE-2025-51630
Analyzed
9.8
TOTOLINK Multiple Products

TOTOLINK N350RT V9.3.5u.6139_B20201216 was discovered to contain a buffer overflow via the ePort parameter in the function setIpPortFilterRules.

2025-07-17
CVE-2025-51452
Analyzed
9.8
TOTOLINK Multiple Products

In TOTOLINK A7000R firmware 9.1.0u.6115_B20201022, an attacker can bypass login by sending a specific request through formLoginAuth.htm.

2025-08-14
CVE-2025-51451
Analyzed
9.8
TOTOLINK Multiple Products

In TOTOLINK EX1200T firmware 4.1.2cu.5215, an attacker can bypass login by sending a specific request through formLoginAuth.htm.

2025-08-14
CVE-2025-51390
Analyzed
9.8
TOTOLINK Multiple Products

TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a command injection vulnerability via the pin parameter in the setWiFiWpsConfig funct...

2025-08-05
CVE-2025-14964
Analyzed
9.8
TOTOLINK Multiple Products

A vulnerability has been found in TOTOLINK T10 4.1.8cu.5083_B20200521. This affects the function sprintf of the file /cgi-bin/cstecgi.cgi. Such manipu...

2025-12-20
CVE-2025-12260
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability has been found in TOTOLINK A3300R 17

2025-10-27
CVE-2025-12259
Analyzed
8.8
TOTOLINK Multiple Products

A flaw has been found in TOTOLINK A3300R 17

2025-10-27
CVE-2025-12258
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was detected in TOTOLINK A3300R 17

2025-10-27
CVE-2025-12241
Analyzed
8.8
TOTOLINK Multiple Products

A vulnerability was detected in TOTOLINK A3300R 17

2025-10-27
CVE-2025-12240
Analyzed
8.8
TOTOLINK Multiple Products

A security vulnerability has been detected in TOTOLINK A3300R 17

2025-10-27
CVE-2025-12239
Analyzed
8.8
TOTOLINK Multiple Products

A weakness has been identified in TOTOLINK A3300R 17

2025-10-27
CVE-2025-11444
Analyzed
8.8
TOTOLINK Multiple Products

A security vulnerability has been detected in TOTOLINK N600R up to 4

2025-10-08