Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2817▼ 183 respecto a la semana anterior
Críticas / altas1372▲ 48 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)247▼ 271 respecto a la semana anterior
53 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.5) | 0.46% | — | Totolink A3002ruAI | 29/4/2026 | 17/6/2026 | TOTOLINK A3002RU V3 <= V3.0.0-B20220304.1804 was discovered to contain a stack-based buffer overflow via the hostname parameter in the formMapDelDevice function. | |
| Modificada | Alta (8.8) | 1.3% | — | Totolink A3002ru Firmware | 17/2/2026 | 17/6/2026 | TOTOLINK A3002RU_V3 V3.0.0-B20220304.1804 was discovered to contain a stack-based buffer overflow via the static_ipv6 parameter in the formIpv6Setup function. | |
| Modificada | Alta (8.8) | 1.0% | — | Totolink A3002ru Firmware | 17/2/2026 | 17/6/2026 | TOTOLINK A3002RU V2.1.1-B20211108.1455 was discovered to contain a stack-based buffer overflow via the vpnUser or vpnPassword` parameters in the formFilter function. | |
| Modificada | Alta (8.8) | 1.3% | — | Totolink A3002ru Firmware | 17/2/2026 | 21/9/2026 | TOTOLINK A3002RU V2.1.1-B20211108.1455 was discovered to contain a stack-based buffer overflow via the routernamer`parameter in the formDnsv6 function. | |
| Analizada | Alta (7.4) | 0.96% | — | Totolink A3002ru Firmware | 1/7/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in TOTOLINK A3002RU 3.0.0-B20230809.1615. Affected is an unknown function of the file /boafrm/formParentControl of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is possible to launch the… | |
| Analizada | Alta (7.4) | 0.96% | — | Totolink A3002ru Firmware | 1/7/2025 | 17/6/2026 | A vulnerability classified as critical has been found in TOTOLINK A3002RU 3.0.0-B20230809.1615. Affected is an unknown function of the file /boafrm/formWlSiteSurvey of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is possible to launch the attack… | |
| Analizada | Alta (7.4) | 1.0% | — | Totolink A3002ru FirmwareTotolink A3002r FirmwareTotolink A702r FirmwareTotolink Ex1200t Firmware | 21/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A702R, A3002R, A3002RU and EX1200T 3.0.0-B20230809.1615/4.0.0-B20230531.1404/4.0.0-B20230721.1521/4.1.2cu.5232_B20210713. It has been classified as critical. Affected is an unknown function of the file /boafrm/formIPv6Addr of the component HTTP POST Request Handler. The… | |
| Analizada | Alta (7.4) | 0.96% | — | Totolink A3002ru FirmwareTotolink A3002r Firmware | 20/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615/4.0.0-B20230531.1404. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /boafrm/formTmultiAP of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads… | |
| Analizada | Alta (7.4) | 0.96% | — | Totolink A3002ru Firmware | 17/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A3002RU 3.0.0-B20230809.1615 and classified as critical. Affected by this issue is some unknown functionality of the file /boafrm/formMultiAP of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack may be… | |
| Analizada | Alta (7.4) | 1.0% | — | Totolink A3002ru Firmware | 17/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A3002RU 3.0.0-B20230809.1615. It has been rated as critical. This issue affects some unknown processing of the file /boafrm/formSysLog of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack may be initiated… | |
| Analizada | Media (4.8) | 0.41% | — | Totolink A3002ru Firmware | 3/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011. It has been rated as problematic. Affected by this issue is some unknown functionality of the component IP Port Filtering Page. The manipulation of the argument Comment leads to cross site scripting. The attack may be launched remotely. The exploit… | |
| Analizada | Media (4.8) | 0.36% | — | Totolink A3002ru Firmware | 3/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component MAC Filtering Page. The manipulation of the argument Comment leads to cross site scripting. The attack can be launched remotely. The… | |
| Analizada | Media (4.8) | 0.36% | — | Totolink A3002ru Firmware | 3/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011. It has been classified as problematic. Affected is an unknown function of the component NAT Mapping Page. The manipulation of the argument Comment leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been… | |
| Analizada | Media (4.8) | 0.43% | — | Totolink A3002ru Firmware | 3/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011 and classified as problematic. This issue affects some unknown processing of the file /boafrm/formPortFw of the component Virtual Server Page. The manipulation of the argument service_type leads to cross site scripting. The attack may be initiated… | |
| Analizada | Alta (8.7) | 0.81% | — | Totolink A702r FirmwareTotolink A3002r FirmwareTotolink A3002ru Firmware | 17/5/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /boafrm/formWlanRedirect of the component HTTP POST Request Handler. The manipulation of the argument redirect-url leads to… | |
| Analizada | Alta (8.7) | 0.81% | — | Totolink A702r FirmwareTotolink A3002r FirmwareTotolink A3002ru Firmware | 17/5/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. It has been classified as critical. Affected is an unknown function of the file /boafrm/formSetLg of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is possible to… | |
| Analizada | Alta (8.7) | 0.81% | — | Totolink A702r FirmwareTotolink A3002r FirmwareTotolink A3002ru Firmware | 17/5/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615 and classified as critical. This issue affects some unknown processing of the file /boafrm/formNtp of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack may be… | |
| Analizada | Alta (8.7) | 0.81% | — | Totolink A702r FirmwareTotolink A3002r FirmwareTotolink A3002ru Firmware | 17/5/2025 | 17/6/2026 | A vulnerability has been found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615 and classified as critical. This vulnerability affects unknown code of the file /boafrm/formDosCfg of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack can… | |
| Analizada | Alta (8.7) | 0.81% | — | Totolink A702r FirmwareTotolink A3002r FirmwareTotolink A3002ru Firmware | 17/5/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. This affects an unknown part of the file /boafrm/formSiteSurveyProfile of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is… | |
| Analizada | Alta (8.7) | 0.81% | — | Totolink A702r FirmwareTotolink A3002r FirmwareTotolink A3002ru Firmware | 17/5/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. Affected by this issue is some unknown functionality of the file /boafrm/formSysCmd of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer… | |
| Analizada | Alta (8.7) | 0.81% | — | Totolink A702r FirmwareTotolink A3002r FirmwareTotolink A3002ru Firmware | 17/5/2025 | 17/6/2026 | A vulnerability classified as critical was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. Affected by this vulnerability is the function sub_40BE30 of the file /boafrm/formStats of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The… | |
| Analizada | Alta (8.7) | 0.81% | — | Totolink A702r FirmwareTotolink A3002r FirmwareTotolink A3002ru Firmware | 17/5/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. Affected is an unknown function of the file /boafrm/formSaveConfig of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is possible to… | |
| Analizada | Alta (8.7) | 0.81% | — | Totolink A702r FirmwareTotolink A3002r FirmwareTotolink A3002ru Firmware | 17/5/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. This issue affects some unknown processing of the file /boafrm/formWirelessTbl of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow.… | |
| Analizada | Alta (8.7) | 0.81% | — | Totolink A702r FirmwareTotolink A3002r FirmwareTotolink A3002ru Firmware | 17/5/2025 | 17/6/2026 | A vulnerability classified as critical was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. This vulnerability affects unknown code of the file /boafrm/formDMZ of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack can be initiated… | |
| Analizada | Alta (8.7) | 0.81% | — | Totolink A702r FirmwareTotolink A3002r FirmwareTotolink A3002ru Firmware | 17/5/2025 | 17/6/2026 | A vulnerability classified as critical has been found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. This affects an unknown part of the file /boafrm/formWsc of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is possible to initiate the… |