cbcvebase.

Totolink Nr1800X Firmware vulnerabilities

27 known vulnerabilities affecting totolink/nr1800x_firmware.

Total CVEs
27
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL7HIGH17MEDIUM3

Vulnerabilities

Page 2 of 2
CVE-2022-41521P3HIGHCVSS 8.8v9.1.0u.6279_b202109102022-10-06
CVE-2022-41521 [HIGH] CWE-787 CVE-2022-41521: TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow vi TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the sPort/ePort parameter in the setIpPortFilterRules function.
nvd
CVE-2022-41528P3HIGHCVSS 8.8v9.1.0u.6279_b202109102022-10-06
CVE-2022-41528 [HIGH] CWE-787 CVE-2022-41528: TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow vi TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the text parameter in the setSmsCfg function.
nvd
CVE-2022-41520P3HIGHCVSS 8.8v9.1.0u.6279_b202109102022-10-06
CVE-2022-41520 [HIGH] CWE-787 CVE-2022-41520: TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow vi TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the File parameter in the UploadCustomModule function.
nvd
CVE-2022-41524P3HIGHCVSS 8.8v9.1.0u.6279_b202109102022-10-06
CVE-2022-41524 [HIGH] CWE-787 CVE-2022-41524: TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow vi TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the week, sTime, and eTime parameters in the setParentalRules function.
nvd
CVE-2025-60688P3MEDIUMCVSS 6.5v9.1.0u.6681_b202307032025-11-13
CVE-2025-60688 [MEDIUM] CWE-121 CVE-2025-60688: A stack buffer overflow vulnerability exists in the ToToLink LR1200GB (V9.1.0u.6619_B20230130) and N A stack buffer overflow vulnerability exists in the ToToLink LR1200GB (V9.1.0u.6619_B20230130) and NR1800X (V9.1.0u.6681_B20230703) Router firmware within the cstecgi.cgi binary (setDefResponse function). The binary reads the "IpAddress" parameter from a web request and copies it into a fixed-size stack buffer using strcpy() without any length valid
nvd
CVE-2025-60684P3MEDIUMCVSS 6.5v9.1.0u.6681_b202307032025-11-13
CVE-2025-60684 [MEDIUM] CWE-121 CVE-2025-60684: A stack buffer overflow vulnerability exists in the ToToLink LR1200GB (V9.1.0u.6619_B20230130) and N A stack buffer overflow vulnerability exists in the ToToLink LR1200GB (V9.1.0u.6619_B20230130) and NR1800X (V9.1.0u.6681_B20230703) Router firmware within the cstecgi.cgi binary (sub_42F32C function). The web interface reads the "lang" parameter and constructs Help URL strings using sprintf() into fixed-size stack buffers without proper length valid
nvd
CVE-2025-60686P4MEDIUMCVSS 5.1v9.1.0u.6681_b202307032025-11-13
CVE-2025-60686 [MEDIUM] CWE-121 CVE-2025-60686: A local stack-based buffer overflow vulnerability exists in the infostat.cgi and cstecgi.cgi binarie A local stack-based buffer overflow vulnerability exists in the infostat.cgi and cstecgi.cgi binaries of ToToLink routers (A720R V4.1.5cu.614_B20230630, LR1200GB V9.1.0u.6619_B20230130, and NR1800X V9.1.0u.6681_B20230703). Both programs parse the contents of /proc/net/arp using sscanf() with "%s" format specifiers into fixed-size stack buffers witho
nvd