Skip to main content

Vendor/product archive

totolink / t8 CVEs

Beta · best-effort

26 CVEs tagged to totolink / t811 Critical, 10 High, 4 Medium, 1 Low, 0 Unrated.

CVE-2024-46424

Published Sep 16, 2024

TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the UploadCustomModule function, which allows attackers to cause a Denial of Service (DoS) via the…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-8580

Published Sep 8, 2024

A vulnerability classified as critical was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. This vulnerability affects unknown code of the file /etc/shadow.sample. The manipulat…

CVSS 9.2 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-8579

Published Sep 8, 2024

A vulnerability classified as critical has been found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. This affects the function setWiFiRepeaterCfg of the file /cgi-bin/cstecgi.cgi. T…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-8578

Published Sep 8, 2024

A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. It has been rated as critical. Affected by this issue is the function setWiFiMeshName of the file /cgi-bin/c…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-8575

Published Sep 8, 2024

A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220 and classified as critical. This issue affects the function setWiFiScheduleCfg of the file /cgi-bin/cstecgi.c…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-8574

Published Sep 8, 2024

A vulnerability has been found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220 and classified as critical. This vulnerability affects the function setParentalRules of the file /cgi-bi…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-8079

Published Aug 22, 2024

A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228. It has been rated as critical. This issue affects the function exportOvpn. The manipulation leads to buffer…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-8078

Published Aug 22, 2024

A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228. It has been declared as critical. This vulnerability affects the function setTracerouteCfg. The manipulation…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-8077

Published Aug 22, 2024

A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228. It has been classified as critical. This affects the function setTracerouteCfg. The manipulation leads to os…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-8076

Published Aug 22, 2024

A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228 and classified as critical. Affected by this issue is the function setDiagnosisCfg. The manipulation leads to…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-8075

Published Aug 22, 2024

A vulnerability has been found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228 and classified as critical. Affected by this vulnerability is the function setDiagnosisCfg. The manipula…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-0944

Published Jan 26, 2024

A vulnerability was found in Totolink T8 4.1.5cu.833_20220905. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /cgi-bin/cstecgi.…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2024-0569

Published Jan 16, 2024

A vulnerability classified as problematic has been found in Totolink T8 4.1.5cu.833_20220905. This affects the function getSysStatusCfg of the file /cgi-bin/cstecgi.cgi of the com…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-24157

Published Feb 3, 2023

A command injection vulnerability in the serverIp parameter in the function updateWifiInfo of TOTOLINK T8 V4.1.5cu allows attackers to execute arbitrary commands via a crafted MQT…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-24156

Published Feb 3, 2023

A command injection vulnerability in the ip parameter in the function recvSlaveUpgstatus of TOTOLINK T8 V4.1.5cu allows attackers to execute arbitrary commands via a crafted MQTT…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-24155

Published Feb 3, 2023

TOTOLINK T8 V4.1.5cu was discovered to contain a hard code password for the telnet service which is stored in the component /web_cste/cgi-bin/product.ini.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-24153

Published Feb 3, 2023

A command injection vulnerability in the version parameter in the function recvSlaveCloudCheckStatus of TOTOLINK T8 V4.1.5cu allows attackers to execute arbitrary commands via a c…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-24152

Published Feb 3, 2023

A command injection vulnerability in the serverIp parameter in the function meshSlaveUpdate of TOTOLINK T8 V4.1.5cu allows attackers to execute arbitrary commands via a crafted MQ…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-24151

Published Feb 3, 2023

A command injection vulnerability in the ip parameter in the function recvSlaveCloudCheckStatus of TOTOLINK T8 V4.1.5cu allows attackers to execute arbitrary commands via a crafte…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-25 of 26 CVEsPage 1 of 2