Vulnerabilities
Vulnerable Software
Totolink:  >> Cp300+ Firmware  Security Vulnerabilities
TOTOLINK CP300+ <=V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the File parameter in the function UploadCustomModule.
CVSS Score
9.8
EPSS Score
0.002
Published
2023-10-16
TOTOLINK CP300+ V5.2cu.7594_B20200910 and before is vulnerable to command injection.
CVSS Score
9.8
EPSS Score
0.03
Published
2023-10-16
TOTOLINK CP300+ V5.2cu.7594_B20200910 and before is vulnerable to command injection.
CVSS Score
9.8
EPSS Score
0.03
Published
2023-10-16
TOTOLINK CP300+ V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the pingIp parameter in the function setDiagnosisCfg.
CVSS Score
9.8
EPSS Score
0.002
Published
2023-10-16
TOTOLINK CP300+ V5.2cu.7594 contains a Denial of Service vulnerability in function RebootSystem of the file lib/cste_modules/system which can reboot the system.
CVSS Score
7.5
EPSS Score
0.001
Published
2023-07-17
A command injection vulnerability in the hostTime parameter in the function NTPSyncWithHostof TOTOLINK CP300+ V5.2cu.7594_B20200910 allows attackers to execute arbitrary commands via a crafted http packet.
CVSS Score
9.8
EPSS Score
0.018
Published
2023-05-16


Contact Us

Shodan ® - All rights reserved