Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Totolink — Vulnerabilities & Security Advisories 395

Browse all 395 CVE security advisories affecting Totolink. AI-powered Chinese analysis, POCs, and references for each vulnerability.

CVE IDTitleCVSSSeverityPublished
CVE-2025-8139 TOTOLINK A702R HTTP POST Request formPortFw buffer overflow — A702RCWE-120 8.8 High2025-07-25
CVE-2025-8138 TOTOLINK A702R HTTP POST Request formOneKeyAccessButton buffer overflow — A702RCWE-120 8.8 High2025-07-25
CVE-2025-8137 TOTOLINK A702R HTTP POST Request formIpQoS buffer overflow — A702RCWE-120 8.8 High2025-07-25
CVE-2025-8136 TOTOLINK A702R HTTP POST Request formFilter buffer overflow — A702RCWE-120 8.8 High2025-07-25
CVE-2025-7952 TOTOLINK T6 MQTT Packet wireless.so ckeckKeepAlive command injection — T6CWE-77 6.3 Medium2025-07-22
CVE-2025-7913 TOTOLINK T6 MQTT Service updateWifiInfo buffer overflow — T6CWE-120 8.8 High2025-07-20
CVE-2025-7912 TOTOLINK T6 MQTT Service recvSlaveUpgstatus buffer overflow — T6CWE-120 8.8 High2025-07-20
CVE-2025-7862 TOTOLINK T6 Telnet Service cstecgi.cgi setTelnetCfg missing authentication — T6CWE-306 7.3 High2025-07-20
CVE-2025-7837 TOTOLINK T6 MQTT Service recvSlaveStaInfo buffer overflow — T6CWE-120 8.8 High2025-07-19
CVE-2025-7758 TOTOLINK T6 HTTP POST Request cstecgi.cgi setDiagnosisCfg buffer overflow — T6CWE-120 8.8 High2025-07-17
CVE-2025-7615 TOTOLINK T6 HTTP POST Request cstecgi.cgi clearPairCfg command injection — T6CWE-77 6.3 Medium2025-07-14
CVE-2025-7614 TOTOLINK T6 HTTP POST Request cstecgi.cgi delDevice command injection — T6CWE-77 6.3 Medium2025-07-14
CVE-2025-7613 TOTOLINK T6 HTTP POST Request cstecgi.cgi CloudSrvVersionCheck command injection — T6CWE-77 6.3 Medium2025-07-14
CVE-2025-7525 TOTOLINK T6 HTTP POST Request cstecgi.cgi setTracerouteCfg command injection — T6CWE-77 6.3 Medium2025-07-13
CVE-2025-7524 TOTOLINK T6 HTTP POST Request cstecgi.cgi setDiagnosisCfg command injection — T6CWE-77 6.3 Medium2025-07-13
CVE-2025-7460 TOTOLINK T6 HTTP POST Request cstecgi.cgi setWiFiAclRules buffer overflow — T6CWE-120 8.8 High2025-07-11
CVE-2025-7154 TOTOLINK N200RE cstecgi.cgi sub_41A0F8 os command injection — N200RECWE-78 6.3 Medium2025-07-08
CVE-2025-6953 TOTOLINK A3002RU HTTP POST Request formParentControl buffer overflow — A3002RUCWE-120 8.8 High2025-07-01
CVE-2025-6940 TOTOLINK A702R HTTP POST Request formParentControl buffer overflow — A702RCWE-120 8.8 High2025-07-01
CVE-2025-6939 TOTOLINK A3002RU HTTP POST Request formWlSiteSurvey buffer overflow — A3002RUCWE-120 8.8 High2025-07-01
CVE-2025-6916 TOTOLINK T6 formLoginAuth.htm Form_Login missing authentication — T6CWE-306 8.8 High2025-06-30
CVE-2025-6825 TOTOLINK A702R HTTP POST Request formWlSiteSurvey buffer overflow — A702RCWE-120 8.8 High2025-06-28
CVE-2025-6824 TOTOLINK X15 HTTP POST Request formParentControl buffer overflow — X15CWE-120 8.8 High2025-06-28
CVE-2025-6627 TOTOLINK A702R HTTP POST Request formIpv6Setup buffer overflow — A702RCWE-120 8.8 High2025-06-25
CVE-2025-6621 TOTOLINK CA300-PoE ap.so QuickSetting os command injection — CA300-PoECWE-78 6.3 Medium2025-06-25
CVE-2025-6620 TOTOLINK CA300-PoE upgrade.so setUpgradeUboot os command injection — CA300-PoECWE-78 6.3 Medium2025-06-25
CVE-2025-6619 TOTOLINK CA300-PoE upgrade.so setUpgradeFW os command injection — CA300-PoECWE-78 6.3 Medium2025-06-25
CVE-2025-6618 TOTOLINK CA300-PoE wps.so SetWLanApcliSettings os command injection — CA300-PoECWE-78 6.3 Medium2025-06-25
CVE-2025-6568 TOTOLINK EX1200T HTTP POST Request formIpv6Setup buffer overflow — EX1200TCWE-120 8.8 High2025-06-24
CVE-2025-6487 TOTOLINK A3002R formRoute stack-based overflow — A3002RCWE-121 8.8 High2025-06-22

This page lists every published CVE security advisory associated with Totolink. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.