CVE-2025-60682
- EPSS 2%
- Veröffentlicht 13.11.2025 00:00:00
- Zuletzt bearbeitet 17.11.2025 19:16:58
A command injection vulnerability exists in the ToToLink A720R Router firmware V4.1.5cu.614_B20230630 within the cloudupdate_check binary, specifically in the sub_402414 function that handles cloud update parameters. User-supplied 'magicid' and 'url'...
CVE-2025-60683
- EPSS 15.02%
- Veröffentlicht 13.11.2025 00:00:00
- Zuletzt bearbeitet 17.11.2025 19:16:33
A command injection vulnerability exists in the ToToLink A720R Router firmware V4.1.5cu.614_B20230630 within the sysconf binary, specifically in the sub_40BFA4 function that handles network interface reinitialization from '/var/system/linux_vlan_rein...
CVE-2025-60685
- EPSS 0.02%
- Veröffentlicht 13.11.2025 00:00:00
- Zuletzt bearbeitet 17.11.2025 21:50:14
A stack buffer overflow exists in the ToToLink A720R Router firmware V4.1.5cu.614_B20230630 within the sysconf binary (sub_401EE0 function). The binary reads the /proc/stat file using fgets() into a local buffer and subsequently parses the line using...
CVE-2025-60686
- EPSS 0.02%
- Veröffentlicht 13.11.2025 00:00:00
- Zuletzt bearbeitet 19.11.2025 17:41:28
A local stack-based buffer overflow vulnerability exists in the infostat.cgi and cstecgi.cgi binaries of ToToLink routers (A720R V4.1.5cu.614_B20230630, LR1200GB V9.1.0u.6619_B20230130, and NR1800X V9.1.0u.6681_B20230703). Both programs parse the con...
CVE-2025-9303
- EPSS 0.75%
- Veröffentlicht 21.08.2025 14:32:07
- Zuletzt bearbeitet 06.10.2025 18:48:16
A security flaw has been discovered in TOTOLINK A720R 4.1.5cu.630_B20250509. This issue affects the function setParentalRules of the file /cgi-bin/cstecgi.cgi. Performing manipulation of the argument desc results in buffer overflow. The attack is pos...
CVE-2025-4271
- EPSS 0.08%
- Veröffentlicht 05.05.2025 08:00:08
- Zuletzt bearbeitet 07.05.2025 16:38:36
A vulnerability was found in TOTOLINK A720R 4.1.5cu.374. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument topicurl with the input showSy...
CVE-2025-4270
- EPSS 0.17%
- Veröffentlicht 05.05.2025 07:31:07
- Zuletzt bearbeitet 07.05.2025 16:38:30
A vulnerability was found in TOTOLINK A720R 4.1.5cu.374. It has been classified as problematic. Affected is an unknown function of the file /cgi-bin/cstecgi.cgi of the component Config Handler. The manipulation of the argument topicurl with the input...
CVE-2025-4269
- EPSS 0.15%
- Veröffentlicht 05.05.2025 07:15:48
- Zuletzt bearbeitet 07.05.2025 16:38:25
A vulnerability was found in TOTOLINK A720R 4.1.5cu.374 and classified as critical. This issue affects some unknown processing of the file /cgi-bin/cstecgi.cgi of the component Log Handler. The manipulation of the argument topicurl with the input cle...
CVE-2025-4268
- EPSS 0.12%
- Veröffentlicht 05.05.2025 06:31:07
- Zuletzt bearbeitet 07.05.2025 16:38:18
A vulnerability has been found in TOTOLINK A720R 4.1.5cu.374 and classified as critical. This vulnerability affects unknown code of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument topicurl with the input RebootSystem leads to missing ...