在 Totolink A3002MU 1.0.0-B20230403.1455 版本中发现了一个漏洞。该漏洞影响了文件上传处理组件中的文件 的函数 。通过操控参数 可导致路径穿越(Path Traversal)漏洞。该漏洞可被远程攻击者利用。目前,针对此漏洞的利用代码已公开,可能被恶意使用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105285 | 10.0 CRITICAL | Totolink A3002MU QoS Rule formIpQoS stack-based overflow |
| CVE-2026-105284 | 10.0 CRITICAL | Totolink A3002MU Authentication Check boa sub_40FCFC improper authorization |
No comments yet