Totolink A800R Firmware vulnerabilities
23 known vulnerabilities affecting totolink/a800r_firmware.
Total CVEs
23
CISA KEV
0
Public exploits
0
Exploited in wild
3
Severity breakdown
CRITICAL14HIGH7MEDIUM2
Vulnerabilities
Page 2 of 2
CVE-2025-28032P3HIGHCVSS 7.3v4.1.2cu.5137_b202007302025-04-22
CVE-2025-28032 [HIGH] CWE-121 CVE-2025-28032: TOTOLINK A800R V4.1.2cu.5137_B20200730, A810R V4.1.2cu.5182_B20201026, A830R V4.1.2cu.5182_B20201102
TOTOLINK A800R V4.1.2cu.5137_B20200730, A810R V4.1.2cu.5182_B20201026, A830R V4.1.2cu.5182_B20201102, A950RG V4.1.2cu.5161_B20200903, A3000RU V5.9c.5185_B20201128, and A3100R V4.1.2cu.5247_B20211129 contain a pre-auth buffer overflow vulnerability in the setNoticeCfg function through the IpForm parameter.
nvd
CVE-2022-36611P3HIGHCVSS 7.8v4.1.2cu.5137_b202007302022-08-29
CVE-2022-36611 [HIGH] CWE-798 CVE-2022-36611: TOTOLINK A800R V4.1.2cu.5137_B20200730 was discovered to contain a hardcoded password for root at /e
TOTOLINK A800R V4.1.2cu.5137_B20200730 was discovered to contain a hardcoded password for root at /etc/shadow.sample.
nvd
CVE-2025-28136P3MEDIUMCVSS 6.5v4.1.2cu.5137_b202007302025-04-15
CVE-2025-28136 [MEDIUM] CWE-121 CVE-2025-28136: TOTOLINK A800R V4.1.2cu.5137_B20200730 was found to contain a buffer overflow vulnerability in the d
TOTOLINK A800R V4.1.2cu.5137_B20200730 was found to contain a buffer overflow vulnerability in the downloadFile.cgi.
nvd
← Previous2 / 2