CVE-2025-7525
- EPSS 2.37%
- Published 13.07.2025 09:32:07
- Last modified 15.07.2025 20:15:52
A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015. It has been declared as critical. This vulnerability affects the function setTracerouteCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulation o...
CVE-2025-7524
- EPSS 2.37%
- Published 13.07.2025 09:15:24
- Last modified 15.07.2025 20:15:52
A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015. It has been classified as critical. This affects the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulation of the argumen...
- EPSS 0.19%
- Published 11.07.2025 21:32:07
- Last modified 16.07.2025 14:58:33
A vulnerability has been found in TOTOLINK T6 4.1.5cu.748_B20211015 and classified as critical. Affected by this vulnerability is the function setWiFiAclRules of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulati...
CVE-2025-6916
- EPSS 0.3%
- Published 30.06.2025 17:02:07
- Last modified 07.07.2025 14:41:39
A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015. This affects the function Form_Login of the file /formLoginAuth.htm. The manipulation of the argument authCode/goURL leads to missing authentication. T...
CVE-2023-7223
- EPSS 0.2%
- Published 09.01.2024 16:15:43
- Last modified 21.11.2024 08:45:33
A vulnerability classified as problematic has been found in Totolink T6 4.1.9cu.5241_B20210923. This affects an unknown part of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument topicurl with the input showSyslog leads to improper acces...
CVE-2023-7221
- EPSS 0.29%
- Published 09.01.2024 14:15:46
- Last modified 21.11.2024 08:45:32
A vulnerability was found in Totolink T6 4.1.9cu.5241_B20210923. It has been classified as critical. This affects the function main of the file /cgi-bin/cstecgi.cgi?action=login of the component HTTP POST Request Handler. The manipulation of the argu...
CVE-2022-38828
- EPSS 24.29%
- Published 16.09.2022 15:15:10
- Last modified 21.11.2024 07:17:08
TOTOLINK T6 V4.1.5cu.709_B20210518 is vulnerable to command injection via cstecgi.cgi
CVE-2022-38823
- EPSS 0.42%
- Published 16.09.2022 15:15:09
- Last modified 21.11.2024 07:17:07
In TOTOLINK T6 V4.1.5cu.709_B20210518, there is a hard coded password for root in /etc/shadow.sample.
CVE-2022-38827
- EPSS 2.84%
- Published 16.09.2022 15:15:09
- Last modified 21.11.2024 07:17:08
TOTOLINK T6 V4.1.5cu.709_B20210518 is vulnerable to Buffer Overflow via cstecgi.cgi
CVE-2022-38826
- EPSS 0.57%
- Published 16.09.2022 15:15:09
- Last modified 21.11.2024 07:17:08
In TOTOLINK T6 V4.1.5cu.709_B20210518, there is an execute arbitrary command in cstecgi.cgi.