Known Vulnerabilities for X5000r by Totolink
Listed below are 10 of the newest known vulnerabilities associated with "X5000r" by "Totolink".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-91853 json | A vulnerability has been found in TOTOLINK X5000R 9.1.0cu.2089_B20211224. The impacted element is the function exportOvpn of ... | Not Provided | 2026-09-15 | 2026-09-15 |
| CVE-2026-37152 json | TOTOLINK X5000R V9.1.0cu.2415_B20250515 was discovered to contain a hardcoded password for root access. | Not Provided | 2026-09-15 | 2026-09-16 |
| CVE-2026-15204 json | A vulnerability was detected in TOTOLINK X5000R 9.1.0cu.2415_B20250515/9.1.0cu.2350_B20230313. Affected by this vulnerability... | Not Provided | 2026-07-09 | 2026-07-14 |
| CVE-2025-67445 json | TOTOLINK X5000R V9.1.0cu.2415_B20250515 contains a denial-of-service vulnerability in /cgi-bin/cstecgi.cgi. The CGI reads the... | Not Provided | 2026-02-24 | 2026-07-05 |
| CVE-2025-14586 json | Not Provided | 2025-12-13 | 2026-09-30 | |
| CVE-2025-13184 json | Not Provided | 2025-12-10 | 2026-09-25 | |
| CVE-2025-9934 json | Not Provided | 2025-09-04 | 2026-04-29 | |
| CVE-2023-45985 json | TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 were discovered to contain a stack overflow... | 7.5 - HIGH | 2023-10-16 | 2023-10-19 |
| CVE-2023-45984 json | TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack overflow ... | 9.8 - CRITICAL | 2023-10-16 | 2023-10-19 |
| CVE-2023-39618 json | TOTOLINK X5000R B20210419 was discovered to contain a remote code execution (RCE) vulnerability via the setTracerouteCfg inte... | 9.8 - CRITICAL | 2023-08-21 | 2023-08-25 |