cbcvebase.

Totolink Ex200 vulnerabilities

4 known vulnerabilities affecting totolink/ex200.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2024-7336P2HIGHCVSS 8.8v4.0.3c.7646_B202012112024-08-01
CVE-2024-7336 [HIGH] CWE-120 CVE-2024-7336: A vulnerability classified as critical was found in TOTOLINK EX200 4.0.3c.7646_B20201211. Affected b A vulnerability classified as critical was found in TOTOLINK EX200 4.0.3c.7646_B20201211. Affected by this vulnerability is the function loginauth of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument http_host leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The as
nvd
CVE-2024-7335P2HIGHCVSS 8.8v4.0.3c.7646_B202012112024-08-01
CVE-2024-7335 [HIGH] CWE-120 CVE-2024-7335: A vulnerability classified as critical has been found in TOTOLINK EX200 4.0.3c.7646_B20201211. Affec A vulnerability classified as critical has been found in TOTOLINK EX200 4.0.3c.7646_B20201211. Affected is the function getSaveConfig of the file /cgi-bin/cstecgi.cgi?action=save&setting. The manipulation of the argument http_host leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may
nvd
CVE-2026-15271P3HIGHCVSS 7.5v202609062026-07-09
CVE-2026-15271 [HIGH] CWE-266 CVE-2026-15271: A security vulnerability has been detected in TOTOLINK A3000RU, A3100R, A950RG, AC1200T10, CP450, CS A security vulnerability has been detected in TOTOLINK A3000RU, A3100R, A950RG, AC1200T10, CP450, CS185R_T10 and EX200 up to 20260906. Affected by this issue is some unknown functionality of the file /etc/boa/boa.conf of the component Web Interface. The manipulation leads to least privilege violation. The attack may be initiated remotely. The attack's
nvd
CVE-2026-11620P3MEDIUMCVSS 5.3v4.0.3c.76462026-06-09
CVE-2026-11620 [MEDIUM] CWE-266 CVE-2026-11620: A security flaw has been discovered in TOTOLINK EX200 4.0.3c.7646. This affects an unknown function A security flaw has been discovered in TOTOLINK EX200 4.0.3c.7646. This affects an unknown function of the file /etc/vsftpd.conf of the component vsftpd. The manipulation results in least privilege violation. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks.
nvd
Totolink Ex200 vulnerabilities | cvebase