Skip to main content

Vendor/product archive

totolink / n200re_firmware CVEs

Beta · best-effort

21 CVEs tagged to totolink / n200re_firmware2 Critical, 15 High, 2 Medium, 2 Low, 0 Unrated.

CVE-2024-1004

Published Jan 29, 2024

A vulnerability, which was classified as critical, was found in Totolink N200RE 9.3.5u.6139_B20201216. This affects the function loginAuth of the file /cgi-bin/cstecgi.cgi. The ma…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-1003

Published Jan 29, 2024

A vulnerability, which was classified as critical, has been found in Totolink N200RE 9.3.5u.6139_B20201216. Affected by this issue is the function setLanguageCfg of the file /cgi-…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-1002

Published Jan 29, 2024

A vulnerability classified as critical was found in Totolink N200RE 9.3.5u.6139_B20201216. Affected by this vulnerability is the function setIpPortFilterRules of the file /cgi-bin…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-1001

Published Jan 29, 2024

A vulnerability classified as critical has been found in Totolink N200RE 9.3.5u.6139_B20201216. Affected is the function main of the file /cgi-bin/cstecgi.cgi. The manipulation le…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-0999

Published Jan 29, 2024

A vulnerability was found in Totolink N200RE 9.3.5u.6139_B20201216. It has been declared as critical. This vulnerability affects the function setParentalRules of the file /cgi-bin…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-0998

Published Jan 29, 2024

A vulnerability was found in Totolink N200RE 9.3.5u.6139_B20201216. It has been classified as critical. This affects the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi.…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-0997

Published Jan 29, 2024

A vulnerability was found in Totolink N200RE 9.3.5u.6139_B20201216 and classified as critical. Affected by this issue is the function setOpModeCfg of the file /cgi-bin/cstecgi.cgi…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-0299

Published Jan 8, 2024

A vulnerability was found in Totolink N200RE 9.3.5u.6139_B20201216. It has been declared as critical. Affected by this vulnerability is the function setTracerouteCfg of the file /…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2024-0298

Published Jan 8, 2024

A vulnerability was found in Totolink N200RE 9.3.5u.6139_B20201216. It has been classified as critical. Affected is the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi.…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2024-0297

Published Jan 8, 2024

A vulnerability was found in Totolink N200RE 9.3.5u.6139_B20201216 and classified as critical. This issue affects the function UploadFirmwareFile of the file /cgi-bin/cstecgi.cgi.…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2024-0296

Published Jan 8, 2024

A vulnerability has been found in Totolink N200RE 9.3.5u.6139_B20201216 and classified as critical. This vulnerability affects the function NTPSyncWithHost of the file /cgi-bin/cs…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2023-2790

Published May 18, 2023

A vulnerability classified as problematic has been found in TOTOLINK N200RE 9.3.5u.6255_B20211224. Affected is an unknown function of the file /squashfs-root/etc_ro/custom.conf of…

CVSS 2.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2019-19824

Published Jan 27, 2020

On certain TOTOLINK Realtek SDK based routers, an authenticated attacker may execute arbitrary OS commands via the sysCmd parameter to the boafrm/formSysCmd URI, even if the GUI (…

CVSS 8.8 · High
evidence mentions
2
Buzz score
17.5

CVE-2019-19825

Published Jan 27, 2020

On certain TOTOLINK Realtek SDK based routers, the CAPTCHA text can be retrieved via an {"topicurl":"setting/getSanvas"} POST to the boafrm/formLogin URI, leading to a CAPTCHA byp…

CVSS 9.8 · Critical
Showing 1-21 of 21 CVEsPage 1 of 1