CVE-2024-7177
- EPSS 0.23%
- Published 29.07.2024 02:15:13
- Last modified 21.11.2024 09:51:01
A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. It has been classified as critical. Affected is the function setLanguageCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument langType leads to buffer overflow. It ...
CVE-2024-7176
- EPSS 0.24%
- Published 29.07.2024 02:15:12
- Last modified 21.11.2024 09:51:00
A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102 and classified as critical. This issue affects the function setIpQosRules of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument comment leads to buffer overflow. The att...
CVE-2024-7175
- EPSS 2.46%
- Published 29.07.2024 01:15:09
- Last modified 21.11.2024 09:51:00
A vulnerability has been found in TOTOLINK A3600R 4.1.2cu.5182_B20201102 and classified as critical. This vulnerability affects the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument ipDoamin leads to os comma...
CVE-2024-7174
- EPSS 0.25%
- Published 29.07.2024 00:15:02
- Last modified 21.11.2024 09:51:00
A vulnerability, which was classified as critical, was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. This affects the function setdeviceName of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument deviceMac/deviceName leads to buffer ov...
CVE-2024-7173
- EPSS 0.22%
- Published 29.07.2024 00:15:02
- Last modified 21.11.2024 09:51:00
A vulnerability, which was classified as critical, has been found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. Affected by this issue is the function loginauth of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument password/http_host leads ...
CVE-2024-7172
- EPSS 0.22%
- Published 28.07.2024 23:15:10
- Last modified 21.11.2024 09:51:00
A vulnerability classified as critical was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. Affected by this vulnerability is the function getSaveConfig of the file /cgi-bin/cstecgi.cgi?action=save&setting. The manipulation of the argument http_host ...
CVE-2024-7171
- EPSS 2.67%
- Published 28.07.2024 23:15:09
- Last modified 21.11.2024 09:51:00
A vulnerability classified as critical has been found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. Affected is the function NTPSyncWithHost of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument hostTime leads to os command injection. It is...
CVE-2024-7159
- EPSS 0.08%
- Published 28.07.2024 15:15:09
- Last modified 21.11.2024 09:50:58
A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. It has been rated as critical. This issue affects some unknown processing of the file /web_cste/cgi-bin/product.ini of the component Telnet Service. The manipulation leads to use of...
CVE-2022-36455
- EPSS 1.27%
- Published 25.08.2022 15:15:08
- Last modified 21.11.2024 07:13:03
TOTOLink A3600R V4.1.2cu.5182_B20201102 was discovered to contain a command injection vulnerability via the username parameter in /cstecgi.cgi.
CVE-2022-34993
- EPSS 0.44%
- Published 04.08.2022 19:15:09
- Last modified 21.11.2024 07:10:32
Totolink A3600R_Firmware V4.1.2cu.5182_B20201102 contains a hard code password for root in /etc/shadow.sample.