Known Vulnerabilities for A3002r by Totolink
Listed below are 10 of the newest known vulnerabilities associated with "A3002r" by "Totolink".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-40112 json | TOTOLINK A3002R TOTOLINK-A3002R-He-V1.1.1-B20200824.0128 is vulnerable Buffer Overflow via the hostname parameter in binary /... | 7.5 - HIGH | 2022-09-06 | 2022-09-09 |
| CVE-2022-40111 json | In TOTOLINK A3002R TOTOLINK-A3002R-He-V1.1.1-B20200824.0128 in the shadow.sample file, root is hardcoded in the firmware. | 9.8 - CRITICAL | 2022-09-06 | 2022-09-09 |
| CVE-2022-40110 json | TOTOLINK A3002R TOTOLINK-A3002R-He-V1.1.1-B20200824.0128 is vulnerable to Buffer Overflow via /bin/boa. | 7.5 - HIGH | 2022-09-06 | 2022-09-08 |
| CVE-2022-40109 json | TOTOLINK A3002R TOTOLINK-A3002R-He-V1.1.1-B20200824.0128 is vulnerable to Insecure Permissions via binary /bin/boa. | 9.8 - CRITICAL | 2022-09-06 | 2022-09-09 |
| CVE-2021-34228 json | Cross-site scripting in parent_control.htm in TOTOLINK A3002R version V1.1.1-B20200824 (Important Update, new UI) allows atta... | 6.1 - MEDIUM | 2021-08-20 | 2021-08-26 |
| CVE-2021-34223 json | Cross-site scripting in urlfilter.htm in TOTOLINK A3002R version V1.1.1-B20200824 (Important Update, new UI) allows attackers... | 6.1 - MEDIUM | 2021-08-20 | 2021-08-26 |
| CVE-2021-34220 json | Cross-site scripting in tr069config.htm in TOTOLINK A3002R version V1.1.1-B20200824 (Important Update, new UI) allows attacke... | 6.1 - MEDIUM | 2021-08-20 | 2021-08-26 |
| CVE-2021-34218 json | Directory Indexing in Login Portal of Login Portal of TOTOLINK-A702R-V1.0.0-B20161227.1023 allows attacker to access /add/ , ... | 5.3 - MEDIUM | 2021-08-20 | 2021-08-26 |
| CVE-2021-34215 json | Cross-site scripting in tcpipwan.htm in TOTOLINK A3002R version V1.1.1-B20200824 (Important Update, new UI) allows attackers ... | 6.1 - MEDIUM | 2021-08-20 | 2021-08-26 |
| CVE-2021-34207 json | Cross-site scripting in ddns.htm in TOTOLINK A3002R version V1.1.1-B20200824 (Important Update, new UI) allows attackers to e... | 6.1 - MEDIUM | 2021-08-20 | 2021-08-26 |