CVE-2022-41527
- EPSS 0.14%
- Published 06.10.2022 19:15:11
- Last modified 21.11.2024 07:23:20
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the pppoeUser parameter in the setOpModeCfg function.
CVE-2022-41526
- EPSS 0.14%
- Published 06.10.2022 19:15:11
- Last modified 21.11.2024 07:23:20
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the ip parameter in the setDiagnosisCfg function.
CVE-2022-41525
- EPSS 1.4%
- Published 06.10.2022 19:15:11
- Last modified 21.11.2024 07:23:19
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain a command injection vulnerability via the OpModeCfg function at /cgi-bin/cstecgi.cgi.
CVE-2022-41524
- EPSS 0.15%
- Published 06.10.2022 19:15:10
- Last modified 21.11.2024 07:23:19
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the week, sTime, and eTime parameters in the setParentalRules function.
CVE-2022-41523
- EPSS 0.14%
- Published 06.10.2022 19:15:10
- Last modified 21.11.2024 07:23:19
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the command parameter in the setTracerouteCfg function.
CVE-2022-41522
- EPSS 0.63%
- Published 06.10.2022 19:15:10
- Last modified 21.11.2024 07:23:19
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an unauthenticated stack overflow via the "main" function.
CVE-2022-41521
- EPSS 0.15%
- Published 06.10.2022 18:17:01
- Last modified 21.11.2024 07:23:19
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the sPort/ePort parameter in the setIpPortFilterRules function.
CVE-2022-41520
- EPSS 0.15%
- Published 06.10.2022 18:17:00
- Last modified 21.11.2024 07:23:19
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the File parameter in the UploadCustomModule function.
CVE-2022-41518
- EPSS 1.62%
- Published 06.10.2022 18:16:59
- Last modified 21.11.2024 07:23:19
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain a command injection vulnerability via the UploadFirmwareFile function at /cgi-bin/cstecgi.cgi.
CVE-2022-41517
- EPSS 0.14%
- Published 06.10.2022 18:16:57
- Last modified 21.11.2024 07:23:18
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain a stack overflow in the lang parameter in the setLanguageCfg function