cbcvebase.

Totolink Ex1800T Firmware vulnerabilities

28 known vulnerabilities affecting totolink/ex1800t_firmware.

Total CVEs
28
CISA KEV
0
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL28

Vulnerabilities

Page 2 of 2
CVE-2023-51024P2CRITICALCVSS 9.8v9.1.0cu.2112_b202203162023-12-22
CVE-2023-51024 [CRITICAL] CVE-2023-51024: TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution i TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘tz’ parameter of the setNtpCfg interface of the cstecgi .cgi.
nvd
CVE-2023-51020P2CRITICALCVSS 9.8v9.1.0cu.2112_b202203162023-12-22
CVE-2023-51020 [CRITICAL] CVE-2023-51020: TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution i TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘langType’ parameter of the setLanguageCfg interface of the cstecgi .cgi.
nvd
CVE-2023-51027P2CRITICALCVSS 9.8v9.1.0cu.2112_b202203162023-12-22
CVE-2023-51027 [CRITICAL] CVE-2023-51027: TOTOlink EX1800T V9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution i TOTOlink EX1800T V9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘apcliAuthMode’ parameter of the setWiFiExtenderConfig interface of the cstecgi .cgi.
nvd
CVE-2023-51013P2CRITICALCVSS 9.8v9.1.0cu.2112_b202203162023-12-22
CVE-2023-51013 [CRITICAL] CVE-2023-51013: TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution i TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the lanNetmask parameter’ of the setLanConfig interface of the cstecgi .cgi.
nvd
CVE-2023-51023P2CRITICALCVSS 9.8v9.1.0cu.2112_b202203162023-12-22
CVE-2023-51023 [CRITICAL] CVE-2023-51023: TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to arbitrary command execution in the ‘host_t TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to arbitrary command execution in the ‘host_time’ parameter of the NTPSyncWithHost interface of the cstecgi .cgi.
nvd
CVE-2023-51016P2CRITICALCVSS 9.8v9.1.0cu.2112_b202203162023-12-22
CVE-2023-51016 [CRITICAL] CWE-77 CVE-2023-51016: TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution i TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the setRebootScheCfg interface of the cstecgi .cgi.
nvd
CVE-2023-51015P2CRITICALCVSS 9.8v9.1.0cu.2112_b202203162023-12-22
CVE-2023-51015 [CRITICAL] CWE-94 CVE-2023-51015: TOTOLINX EX1800T v9.1.0cu.2112_B20220316 is vulnerable to arbitrary command execution in the ‘enable TOTOLINX EX1800T v9.1.0cu.2112_B20220316 is vulnerable to arbitrary command execution in the ‘enable parameter’ of the setDmzCfg interface of the cstecgi .cgi
nvd
CVE-2023-52026P3CRITICALCVSS 9.8v9.1.0cu.2112_b202203162024-01-12
CVE-2023-52026 [CRITICAL] CWE-78 CVE-2023-52026: TOTOlink EX1800T V9.1.0cu.2112_B20220316 was discovered to contain a remote command execution (RCE) TOTOlink EX1800T V9.1.0cu.2112_B20220316 was discovered to contain a remote command execution (RCE) vulnerability via the telnet_enabled parameter of the setTelnetCfg interface
nvd
Totolink Ex1800T Firmware vulnerabilities | cvebase