Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

T6 — Vulnerabilities & Security Advisories 16

All 16 CVE vulnerabilities found in T6, with AI-generated Chinese analysis, references, and POCs.

This vulnerability aggregation page indexes security defects associated with the T6 product, categorized by specific weakness types and vendor-issued advisories. The collection aggregates known vulnerabilities affecting T6, covering its documented vulnerability history across the period of tracked records. Readers can use this page to monitor vendor security notices, analyze recurring weakness classes, and review the chronological sequence of security issues identified for T6.

Vendor: Totolink

CVE ID Title CVSS Severity Published
CVE-2025-8170 TOTOLINK T6 MQTT Packet meshSlaveDlfw tcpcheck_net buffer overflow CWE-120 8.8 High 2025-07-25
CVE-2025-7952 TOTOLINK T6 MQTT Packet wireless.so ckeckKeepAlive command injection CWE-77 6.3 Medium 2025-07-22
CVE-2025-7913 TOTOLINK T6 MQTT Service updateWifiInfo buffer overflow CWE-120 8.8 High 2025-07-20
CVE-2025-7912 TOTOLINK T6 MQTT Service recvSlaveUpgstatus buffer overflow CWE-120 8.8 High 2025-07-20
CVE-2025-7862 TOTOLINK T6 Telnet Service cstecgi.cgi setTelnetCfg missing authentication CWE-306 7.3 High 2025-07-20
CVE-2025-7837 TOTOLINK T6 MQTT Service recvSlaveStaInfo buffer overflow CWE-120 8.8 High 2025-07-19
CVE-2025-7758 TOTOLINK T6 HTTP POST Request cstecgi.cgi setDiagnosisCfg buffer overflow CWE-120 8.8 High 2025-07-17
CVE-2025-7615 TOTOLINK T6 HTTP POST Request cstecgi.cgi clearPairCfg command injection CWE-77 6.3 Medium 2025-07-14
CVE-2025-7614 TOTOLINK T6 HTTP POST Request cstecgi.cgi delDevice command injection CWE-77 6.3 Medium 2025-07-14
CVE-2025-7613 TOTOLINK T6 HTTP POST Request cstecgi.cgi CloudSrvVersionCheck command injection CWE-77 6.3 Medium 2025-07-14
CVE-2025-7525 TOTOLINK T6 HTTP POST Request cstecgi.cgi setTracerouteCfg command injection CWE-77 6.3 Medium 2025-07-13
CVE-2025-7524 TOTOLINK T6 HTTP POST Request cstecgi.cgi setDiagnosisCfg command injection CWE-77 6.3 Medium 2025-07-13
CVE-2025-7460 TOTOLINK T6 HTTP POST Request cstecgi.cgi setWiFiAclRules buffer overflow CWE-120 8.8 High 2025-07-11
CVE-2025-6916 TOTOLINK T6 formLoginAuth.htm Form_Login missing authentication CWE-306 8.8 High 2025-06-30
CVE-2023-7223 Totolink T6 cstecgi.cgi access control CWE-284 5.3 Medium 2024-01-09
CVE-2023-7221 Totolink T6 HTTP POST Request main buffer overflow CWE-120 9.8 Critical 2024-01-09

All 16 known CVE vulnerabilities affecting T6 with full Chinese analysis, references, and POCs where available.