Totolink A3100R vulnerabilities
3 known vulnerabilities affecting totolink/a3100r.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2025-4496HIGHCVSS 8.7v4.1.8cu.5241_B202109272025-05-10
CVE-2025-4496 [HIGH] CWE-119 CVE-2025-4496: A vulnerability was found in TOTOLINK T10, A3100R, A950RG, A800R, N600R, A3000RU and A810R 4.1.8cu.5
A vulnerability was found in TOTOLINK T10, A3100R, A950RG, A800R, N600R, A3000RU and A810R 4.1.8cu.5241_B20210927. It has been declared as critical. This vulnerability affects the function CloudACMunualUpdate of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument FileName leads to buffer overflow. The attack can be initiated remotely. The ex
cvelistv5nvd
CVE-2024-7157HIGHCVSS 8.7v4.1.2cu.5050_B202005042024-07-28
CVE-2024-7157 [HIGH] CWE-120 CVE-2024-7157: A vulnerability was found in TOTOLINK A3100R 4.1.2cu.5050_B20200504. It has been classified as criti
A vulnerability was found in TOTOLINK A3100R 4.1.2cu.5050_B20200504. It has been classified as critical. This affects the function getSaveConfig of the file /cgi-bin/cstecgi.cgi?action=save&setting. The manipulation of the argument http_host leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the p
cvelistv5nvd
CVE-2024-7158MEDIUMCVSS 5.3v4.1.2cu.5050_B202005042024-07-28
CVE-2024-7158 [MEDIUM] CWE-77 CVE-2024-7158: A vulnerability was found in TOTOLINK A3100R 4.1.2cu.5050_B20200504. It has been declared as critica
A vulnerability was found in TOTOLINK A3100R 4.1.2cu.5050_B20200504. It has been declared as critical. This vulnerability affects the function setTelnetCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulation of the argument telnet_enabled leads to command injection. The attack can be initiated remotely. The exp
cvelistv5nvd