Totolink

Nr1800x Firmware

20 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.14%
  • Published 06.10.2022 19:15:11
  • Last modified 21.11.2024 07:23:20

TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the pppoeUser parameter in the setOpModeCfg function.

Exploit
  • EPSS 0.14%
  • Published 06.10.2022 19:15:11
  • Last modified 21.11.2024 07:23:20

TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the ip parameter in the setDiagnosisCfg function.

Exploit
  • EPSS 1.4%
  • Published 06.10.2022 19:15:11
  • Last modified 21.11.2024 07:23:19

TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain a command injection vulnerability via the OpModeCfg function at /cgi-bin/cstecgi.cgi.

Exploit
  • EPSS 0.15%
  • Published 06.10.2022 19:15:10
  • Last modified 21.11.2024 07:23:19

TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the week, sTime, and eTime parameters in the setParentalRules function.

Exploit
  • EPSS 0.14%
  • Published 06.10.2022 19:15:10
  • Last modified 21.11.2024 07:23:19

TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the command parameter in the setTracerouteCfg function.

Exploit
  • EPSS 0.63%
  • Published 06.10.2022 19:15:10
  • Last modified 21.11.2024 07:23:19

TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an unauthenticated stack overflow via the "main" function.

Exploit
  • EPSS 0.15%
  • Published 06.10.2022 18:17:01
  • Last modified 21.11.2024 07:23:19

TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the sPort/ePort parameter in the setIpPortFilterRules function.

Exploit
  • EPSS 0.15%
  • Published 06.10.2022 18:17:00
  • Last modified 21.11.2024 07:23:19

TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the File parameter in the UploadCustomModule function.

Exploit
  • EPSS 1.62%
  • Published 06.10.2022 18:16:59
  • Last modified 21.11.2024 07:23:19

TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain a command injection vulnerability via the UploadFirmwareFile function at /cgi-bin/cstecgi.cgi.

Exploit
  • EPSS 0.14%
  • Published 06.10.2022 18:16:57
  • Last modified 21.11.2024 07:23:18

TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain a stack overflow in the lang parameter in the setLanguageCfg function