Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3027▼ 69 respecto a la semana anterior
Críticas / altas1424▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
37 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 0.38% | — | Totolink Ex1200t Firmware | 13/8/2025 | 5/7/2026 | In TOTOLINK EX1200T firmware 4.1.2cu.5215, an attacker can bypass login by sending a specific request through formLoginAuth.htm. | |
| Analizada | Alta (7.4) | 1.00% | — | Totolink Ex1200t Firmware | 24/6/2025 | 17/6/2026 | A vulnerability classified as critical has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. Affected is an unknown function of the file /boafrm/formIpv6Setup of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is possible to launch the attack… | |
| Analizada | Alta (7.4) | 1.0% | — | Totolink A3002ru FirmwareTotolink A3002r FirmwareTotolink A702r FirmwareTotolink Ex1200t Firmware | 21/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK A702R, A3002R, A3002RU and EX1200T 3.0.0-B20230809.1615/4.0.0-B20230531.1404/4.0.0-B20230721.1521/4.1.2cu.5232_B20210713. It has been classified as critical. Affected is an unknown function of the file /boafrm/formIPv6Addr of the component HTTP POST Request Handler. The… | |
| Analizada | Alta (7.4) | 0.92% | — | Totolink Ex1200t Firmware | 20/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. It has been classified as critical. Affected is an unknown function of the file /boafrm/formTmultiAP of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is possible to launch the… | |
| Analizada | Alta (7.4) | 0.95% | — | Totolink Ex1200t Firmware | 20/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. Affected is the function setStaticDhcpConfig of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument Comment leads to stack-based buffer overflow. It is possible to launch the attack remotely. The… | |
| Analizada | Alta (7.4) | 0.96% | — | Totolink Ex1200t Firmware | 17/6/2025 | 17/6/2026 | A vulnerability has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /boafrm/formMultiAP of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack… | |
| Analizada | Alta (7.4) | 0.96% | — | Totolink Ex1200t Firmware | 16/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713 and classified as critical. Affected by this issue is some unknown functionality of the file /boafrm/formSysLog of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack may be… | |
| Analizada | Alta (7.4) | 0.96% | — | Totolink Ex1200t Firmware | 16/6/2025 | 17/6/2026 | A vulnerability has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /boafrm/formSysCmd of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack… | |
| Analizada | Alta (7.4) | 0.96% | — | Totolink Ex1200t Firmware | 16/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. Affected is an unknown function of the file /boafrm/formNtp of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is possible to launch the attack… | |
| Analizada | Alta (7.4) | 0.96% | — | Totolink Ex1200t Firmware | 16/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This issue affects some unknown processing of the file /boafrm/formStats of the component HTTP POST Request Handler. The manipulation leads to buffer overflow. The attack may be initiated remotely. The exploit… | |
| Analizada | Alta (7.4) | 0.92% | — | Totolink Ex1200t Firmware | 16/6/2025 | 17/6/2026 | A vulnerability classified as critical was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This vulnerability affects unknown code of the file /boafrm/formSaveConfig of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. The attack can be initiated remotely.… | |
| Analizada | Alta (7.4) | 1.2% | — | Totolink Ex1200t Firmware | 16/6/2025 | 17/6/2026 | A vulnerability classified as critical has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This affects an unknown part of the file /boafrm/formWirelessTbl of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is possible to initiate the attack… | |
| Analizada | Alta (7.4) | 1.1% | — | Totolink Ex1200t Firmware | 10/6/2025 | 17/6/2026 | A vulnerability was found in TOTOLINK EX1200T up to 4.1.2cu.5232_B20210713 and classified as critical. Affected by this issue is some unknown functionality of the file /boafrm/formDMZ of the component HTTP POST Request Handler. The manipulation leads to buffer overflow. The attack may be launched remotely. The exploit… | |
| Analizada | Alta (7.4) | 1.1% | — | Totolink Ex1200t Firmware | 10/6/2025 | 17/6/2026 | A vulnerability has been found in TOTOLINK EX1200T up to 4.1.2cu.5232_B20210713 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /boafrm/formWsc of the component HTTP POST Request Handler. The manipulation leads to buffer overflow. The attack can be launched remotely.… | |
| Analizada | Alta (7.4) | 1.4% | — | Totolink Ex1200t Firmware | 10/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in TOTOLINK EX1200T up to 4.1.2cu.5232_B20210713. Affected is an unknown function of the file /boafrm/formReflashClientTbl of the component HTTP POST Request Handler. The manipulation leads to buffer overflow. It is possible to launch the attack remotely.… | |
| Analizada | Alta (7.4) | 1.0% | — | Totolink Ex1200t Firmware | 10/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T up to 4.1.2cu.5232_B20210713. This issue affects some unknown processing of the file /boafrm/formIpQoS of the component HTTP POST Request Handler. The manipulation leads to buffer overflow. The attack may be initiated remotely. The… | |
| Analizada | Alta (7.4) | 6.2% | — | Totolink Ex1200t Firmware | 10/6/2025 | 17/6/2026 | A vulnerability classified as critical was found in TOTOLINK EX1200T up to 4.1.2cu.5232_B20210713. This vulnerability affects unknown code of the file /boafrm/formFilter of the component HTTP POST Request Handler. The manipulation leads to buffer overflow. The attack can be initiated remotely. The exploit has been… | |
| Analizada | Alta (7.4) | 0.91% | — | Totolink Ex1200t Firmware | 6/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. Affected is an unknown function of the file /boafrm/formPortFw of the component HTTP POST Request Handler. The manipulation of the argument service_type leads to buffer overflow. It is possible to launch the attack… | |
| Analizada | Alta (7.4) | 5.8% | — | Totolink Ex1200t Firmware | 6/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This issue affects some unknown processing of the file /boafrm/formWlanRedirect of the component HTTP POST Request Handler. The manipulation of the argument redirect-url leads to buffer overflow. The attack… | |
| Analizada | Crítica (9.3) | 1.2% | — | Totolink Ex1200t Firmware | 4/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This issue affects the function setLanguageCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument LangType leads to stack-based buffer overflow. The attack may be initiated remotely. The… | |
| Analizada | Crítica (9.8) | 1.2% | — | Totolink Ex1200t Firmware | 22/4/2025 | 17/6/2026 | TOTOLINK EX1200T V4.1.2cu.5232_B20210713 was found to contain a pre-auth remote command execution vulnerability in the setUpgradeFW function through the FileName parameter. | |
| Analizada | Crítica (9.8) | 1.2% | — | Totolink Ex1200t Firmware | 22/4/2025 | 17/6/2026 | TOTOLINK EX1200T V4.1.2cu.5232_B20210713 was found to contain a pre-auth remote command execution vulnerability in the setWebWlanIdx function through the webWlanIdx parameter. | |
| Modificada | Crítica (9.8) | 1.6% | — | Totolink Ex1200t Firmware | 11/1/2024 | 17/6/2026 | TOTOlink EX1200T V4.1.2cu.5232_B20210713 was discovered to contain a remote command execution (RCE) vulnerability via the "main" function. | |
| Modificada | Alta (7.5) | 1.4% | — | Totolink Ex1200t Firmware | 3/6/2022 | 17/6/2026 | In TOTOLINK EX1200T V4.1.2cu.5215, an attacker can obtain sensitive information (wifikey, etc.) without authorization through getSysStatusCfg. | |
| Modificada | Media (4.3) | 0.73% | — | Totolink Ex1200t Firmware | 3/6/2022 | 17/6/2026 | In TOTOLINK EX1200T V4.1.2cu.5215, an attacker can start telnet without authorization because the default username and password exists in the firmware. |