Vulnerabilities
Vulnerable Software
Totolink:  Security Vulnerabilities
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the password parameter in the setting/setOpenVpnCertGenerationCfg function.
CVSS Score
9.8
EPSS Score
0.02
Published
2023-01-20
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the rsabits parameter in the setting/delStaticDhcpRules function.
CVSS Score
9.8
EPSS Score
0.02
Published
2023-01-20
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the dayvalid parameter in the setting/delStaticDhcpRules function.
CVSS Score
9.8
EPSS Score
0.02
Published
2023-01-20
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the servername parameter in the setting/delStaticDhcpRules function.
CVSS Score
9.8
EPSS Score
0.02
Published
2023-01-20
TOTOlink A7100RU V7.4cu.2313_B20191024 is vulnerable to Command Injection Vulnerability in the httpd service. An attacker can obtain a stable root shell through a specially constructed payload.
CVSS Score
9.8
EPSS Score
0.019
Published
2023-01-17
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the wscDisabled parameter in the setting/setWiFiSignalCfg function.
CVSS Score
9.8
EPSS Score
0.021
Published
2022-12-15
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the wscDisabled parameter in the setting/setWiFiWpsCfg function.
CVSS Score
9.8
EPSS Score
0.021
Published
2022-12-15
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the port parameter in the setting/setOpenVpnClientCfg function.
CVSS Score
9.8
EPSS Score
0.02
Published
2022-11-25
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the pass parameter in the setting/setOpenVpnCfg function.
CVSS Score
9.8
EPSS Score
0.02
Published
2022-11-25
TOTOLINK LR350 V9.3.5u.6369_B20220309 contains a post-authentication buffer overflow via parameter sPort/ePort in the setIpPortFilterRules function.
CVSS Score
8.8
EPSS Score
0.022
Published
2022-11-23


Contact Us

Shodan ® - All rights reserved