Totolink

T6 Firmware

39 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.37%
  • Published 13.07.2025 09:32:07
  • Last modified 15.07.2025 20:15:52

A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015. It has been declared as critical. This vulnerability affects the function setTracerouteCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulation o...

Exploit
  • EPSS 2.37%
  • Published 13.07.2025 09:15:24
  • Last modified 15.07.2025 20:15:52

A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015. It has been classified as critical. This affects the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulation of the argumen...

Exploit
  • EPSS 0.19%
  • Published 11.07.2025 21:32:07
  • Last modified 16.07.2025 14:58:33

A vulnerability has been found in TOTOLINK T6 4.1.5cu.748_B20211015 and classified as critical. Affected by this vulnerability is the function setWiFiAclRules of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulati...

Exploit
  • EPSS 0.3%
  • Published 30.06.2025 17:02:07
  • Last modified 07.07.2025 14:41:39

A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015. This affects the function Form_Login of the file /formLoginAuth.htm. The manipulation of the argument authCode/goURL leads to missing authentication. T...

Exploit
  • EPSS 0.2%
  • Published 09.01.2024 16:15:43
  • Last modified 21.11.2024 08:45:33

A vulnerability classified as problematic has been found in Totolink T6 4.1.9cu.5241_B20210923. This affects an unknown part of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument topicurl with the input showSyslog leads to improper acces...

Exploit
  • EPSS 0.29%
  • Published 09.01.2024 14:15:46
  • Last modified 21.11.2024 08:45:32

A vulnerability was found in Totolink T6 4.1.9cu.5241_B20210923. It has been classified as critical. This affects the function main of the file /cgi-bin/cstecgi.cgi?action=login of the component HTTP POST Request Handler. The manipulation of the argu...

Exploit
  • EPSS 24.29%
  • Published 16.09.2022 15:15:10
  • Last modified 21.11.2024 07:17:08

TOTOLINK T6 V4.1.5cu.709_B20210518 is vulnerable to command injection via cstecgi.cgi

Exploit
  • EPSS 0.42%
  • Published 16.09.2022 15:15:09
  • Last modified 21.11.2024 07:17:07

In TOTOLINK T6 V4.1.5cu.709_B20210518, there is a hard coded password for root in /etc/shadow.sample.

Exploit
  • EPSS 2.84%
  • Published 16.09.2022 15:15:09
  • Last modified 21.11.2024 07:17:08

TOTOLINK T6 V4.1.5cu.709_B20210518 is vulnerable to Buffer Overflow via cstecgi.cgi

Exploit
  • EPSS 0.57%
  • Published 16.09.2022 15:15:09
  • Last modified 21.11.2024 07:17:08

In TOTOLINK T6 V4.1.5cu.709_B20210518, there is an execute arbitrary command in cstecgi.cgi.