Vulnerabilities (CVE)

Filtered by vendor Totolink Subscribe
Filtered by product N600r
Total 25 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-28912 1 Totolink 2 N600r, N600r Firmware 2024-02-04 10.0 HIGH 9.8 CRITICAL
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename parameter in /setting/setUpgradeFW.
CVE-2022-28908 1 Totolink 2 N600r, N600r Firmware 2024-02-04 10.0 HIGH 9.8 CRITICAL
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the ipdoamin parameter in /setting/setDiagnosisCfg.
CVE-2022-29399 1 Totolink 2 N600r, N600r Firmware 2024-02-04 10.0 HIGH 9.8 CRITICAL
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the url parameter in the function FUN_00415bf0.
CVE-2022-29394 1 Totolink 2 N600r, N600r Firmware 2024-02-04 10.0 HIGH 9.8 CRITICAL
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the macAddress parameter in the function FUN_0041b448.
CVE-2022-26186 1 Totolink 2 N600r, N600r Firmware 2024-02-04 7.5 HIGH 9.8 CRITICAL
TOTOLINK N600R V4.3.0cu.7570_B20200620 was discovered to contain a command injection vulnerability via the exportOvpn interface at cstecgi.cgi.