cbcvebase.

Totolink Cp450 vulnerabilities

5 known vulnerabilities affecting totolink/cp450.

Total CVEs
5
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH1MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2024-7332P2CRITICALCVSS 9.8PoCv4.1.0cu.747_B201912242024-08-01
CVE-2024-7332 [CRITICAL] CWE-259 CVE-2024-7332: A vulnerability was found in TOTOLINK CP450 4.1.0cu.747_B20191224. It has been classified as critica A vulnerability was found in TOTOLINK CP450 4.1.0cu.747_B20191224. It has been classified as critical. This affects an unknown part of the file /web_cste/cgi-bin/product.ini of the component Telnet Service. The manipulation leads to use of hard-coded password. It is possible to initiate the attack remotely. The exploit has been disclosed to the publ
nvd
CVE-2026-85031P2CRITICALCVSS 9.9v4.1.02026-09-03
CVE-2026-85031 [CRITICAL] CWE-119 CVE-2026-85031: A vulnerability was found in TOTOLINK CP450 4.1.0. The impacted element is an unknown function of th A vulnerability was found in TOTOLINK CP450 4.1.0. The impacted element is an unknown function of the file /cgi-bin/cstecgi.cgi. Performing a manipulation of the argument topicurl results in buffer overflow. Remote exploitation of the attack is possible.
nvd
CVE-2024-7465P2CRITICALCVSS 9.8v4.1.0cu.747_B201912242024-08-05
CVE-2024-7465 [CRITICAL] CWE-120 CVE-2024-7465: A vulnerability, which was classified as critical, was found in TOTOLINK CP450 4.1.0cu.747_B20191224 A vulnerability, which was classified as critical, was found in TOTOLINK CP450 4.1.0cu.747_B20191224. Affected is the function loginauth of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument http_host leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB
nvd
CVE-2026-15271P3HIGHCVSS 7.5v202609062026-07-09
CVE-2026-15271 [HIGH] CWE-266 CVE-2026-15271: A security vulnerability has been detected in TOTOLINK A3000RU, A3100R, A950RG, AC1200T10, CP450, CS A security vulnerability has been detected in TOTOLINK A3000RU, A3100R, A950RG, AC1200T10, CP450, CS185R_T10 and EX200 up to 20260906. Affected by this issue is some unknown functionality of the file /etc/boa/boa.conf of the component Web Interface. The manipulation leads to least privilege violation. The attack may be initiated remotely. The attack's
nvd
CVE-2026-11554P4MEDIUMCVSS 4.3v4.1.0cu.7472026-06-08
CVE-2026-11554 [MEDIUM] CWE-266 CVE-2026-11554: A vulnerability was determined in TOTOLINK CP450 4.1.0cu.747. This vulnerability affects unknown cod A vulnerability was determined in TOTOLINK CP450 4.1.0cu.747. This vulnerability affects unknown code of the file /etc/vsftpd.conf of the component vsftpd. This manipulation causes least privilege violation. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.
nvd
Totolink Cp450 vulnerabilities | cvebase