CVE-2025-2370
- EPSS 0.46%
- Published 17.03.2025 09:00:09
- Last modified 07.04.2025 20:43:25
A vulnerability was found in TOTOLINK EX1800T up to 9.1.0cu.2112_B20220316. It has been declared as critical. Affected by this vulnerability is the function setWiFiExtenderConfig of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument apcl...
CVE-2025-2369
- EPSS 0.44%
- Published 17.03.2025 08:31:07
- Last modified 07.04.2025 20:47:37
A vulnerability was found in TOTOLINK EX1800T up to 9.1.0cu.2112_B20220316. It has been classified as critical. Affected is the function setPasswordCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument admpass leads to stack-based bu...
CVE-2025-2097
- EPSS 0.88%
- Published 07.03.2025 23:15:16
- Last modified 03.04.2025 15:28:41
A vulnerability, which was classified as critical, has been found in TOTOLINK EX1800T 9.1.0cu.2112_B20220316. This issue affects the function setRptWizardCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument loginpass leads to stack-...
CVE-2025-2096
- EPSS 1.16%
- Published 07.03.2025 22:15:39
- Last modified 03.04.2025 15:24:48
A vulnerability classified as critical was found in TOTOLINK EX1800T 9.1.0cu.2112_B20220316. This vulnerability affects the function setRebootScheCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument mode/week/minute/recHour leads to...
CVE-2025-2095
- EPSS 1.16%
- Published 07.03.2025 22:15:39
- Last modified 03.04.2025 15:29:25
A vulnerability classified as critical has been found in TOTOLINK EX1800T 9.1.0cu.2112_B20220316. This affects the function setDmzCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument ip leads to os command injection. It is possible ...
CVE-2025-2094
- EPSS 1.96%
- Published 07.03.2025 22:15:38
- Last modified 03.04.2025 15:30:18
A vulnerability was found in TOTOLINK EX1800T 9.1.0cu.2112_B20220316. It has been rated as critical. Affected by this issue is the function setWiFiExtenderConfig of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument apcliKey/key leads to...
CVE-2025-1852
- EPSS 0.45%
- Published 03.03.2025 06:15:21
- Last modified 03.04.2025 15:33:51
A vulnerability has been found in Totolink EX1800T 9.1.0cu.2112_B20220316 and classified as critical. This vulnerability affects the function loginAuth of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument password leads to buffer overfl...
CVE-2024-12352
- EPSS 0.4%
- Published 09.12.2024 02:15:18
- Last modified 10.12.2024 23:31:47
A vulnerability classified as problematic was found in TOTOLINK EX1800T 9.1.0cu.2112_B20220316. This vulnerability affects the function sub_40662C of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument ssid leads to stack-based buffer ove...
CVE-2024-34257
- EPSS 88.71%
- Published 08.05.2024 17:15:07
- Last modified 28.05.2025 15:13:09
TOTOLINK EX1800T V9.1.0cu.2112_B20220316 has a vulnerability in the apcliEncrypType parameter that allows unauthorized execution of arbitrary commands, allowing an attacker to obtain device administrator privileges.
CVE-2023-52026
- EPSS 3.09%
- Published 12.01.2024 13:15:11
- Last modified 11.06.2025 17:15:36
TOTOlink EX1800T V9.1.0cu.2112_B20220316 was discovered to contain a remote command execution (RCE) vulnerability via the telnet_enabled parameter of the setTelnetCfg interface