Skip to main content

Vendor/product archive

totolink / a3100r_firmware CVEs

Beta · best-effort

47 CVEs tagged to totolink / a3100r_firmware24 Critical, 20 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2025-4496

Published May 10, 2025

A vulnerability was found in TOTOLINK T10, A3100R, A950RG, A800R, N600R, A3000RU and A810R 4.1.8cu.5241_B20210927. It has been declared as critical. This vulnerability affects the…

CVSS 8.7 · High
evidence mentions
6
Buzz score
36.0

CVE-2025-28036

Published Apr 22, 2025

TOTOLINK A950RG V4.1.2cu.5161_B20200903 was found to contain a pre-auth remote command execution vulnerability in the setNoticeCfg function through the NoticeUrl parameter.

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
16.0

CVE-2025-28035

Published Apr 22, 2025

TOTOLINK A830R V4.1.2cu.5182_B20201102 was found to contain a pre-auth remote command execution vulnerability in the setNoticeCfg function through the NoticeUrl parameter.

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
16.0

CVE-2025-28034

Published Apr 22, 2025

TOTOLINK A800R V4.1.2cu.5137_B20200730, A810R V4.1.2cu.5182_B20201026, A830R V4.1.2cu.5182_B20201102, A950RG V4.1.2cu.5161_B20200903, A3000RU V5.9c.5185_B20201128, and A3100R V4.1…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
16.0

CVE-2025-28033

Published Apr 22, 2025

TOTOLINK A800R V4.1.2cu.5137_B20200730, A810R V4.1.2cu.5182_B20201026, A830R V4.1.2cu.5182_B20201102, A950RG V4.1.2cu.5161_B20200903, A3000RU V5.9c.5185_B20201128, and A3100R V4.1…

CVSS 7.3 · High
evidence mentions
2
Buzz score
16.0

CVE-2025-28032

Published Apr 22, 2025

TOTOLINK A800R V4.1.2cu.5137_B20200730, A810R V4.1.2cu.5182_B20201026, A830R V4.1.2cu.5182_B20201102, A950RG V4.1.2cu.5161_B20200903, A3000RU V5.9c.5185_B20201128, and A3100R V4.1…

CVSS 7.3 · High
evidence mentions
1
Buzz score
11.9

CVE-2025-28256

Published Mar 28, 2025

An issue in TOTOLINK A3100R V4.1.2cu.5247_B20211129 allows a remote attacker to execute arbitrary code via the setWebWlanIdx of the file /lib/cste_modules/wireless.so.

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
16.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2024-7158

Published Jul 28, 2024

A vulnerability was found in TOTOLINK A3100R 4.1.2cu.5050_B20200504. It has been declared as critical. This vulnerability affects the function setTelnetCfg of the file /cgi-bin/cs…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-7157

Published Jul 28, 2024

A vulnerability was found in TOTOLINK A3100R 4.1.2cu.5050_B20200504. It has been classified as critical. This affects the function getSaveConfig of the file /cgi-bin/cstecgi.cgi?a…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-36650

Published Jun 11, 2024

TOTOLINK AC1200 Wireless Dual Band Gigabit Router firmware A3100R V4.1.2cu.5247_B20211129, in the cgi function `setNoticeCfg` of the file `/lib/cste_modules/system.so`, the length…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-28935

Published Jul 6, 2022

Totolink A830R V5.9c.4729_B20191112, Totolink A3100R V4.1.2cu.5050_B20200504, Totolink A950RG V4.1.2cu.5161_B20200903, Totolink A800R V4.1.2cu.5137_B20200730, Totolink A3000RU V5.…

CVSS 7.2 · High

CVE-2022-29644

Published May 18, 2022

TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a hard coded password for the telnet service stored in the component /web_cste/cgi-b…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-25 of 47 CVEsPage 1 of 2