Metrics
Affected Vendors & Products
Wed, 07 May 2025 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Totolink
Totolink a720r Totolink a720r Firmware |
|
CPEs | cpe:2.3:h:totolink:a720r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:a720r_firmware:4.1.5cu.374:*:*:*:*:*:*:* |
|
Vendors & Products |
Totolink
Totolink a720r Totolink a720r Firmware |
Mon, 05 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 05 May 2025 06:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in TOTOLINK A720R 4.1.5cu.374 and classified as critical. This vulnerability affects unknown code of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument topicurl with the input RebootSystem leads to missing authentication. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | |
Title | TOTOLINK A720R cstecgi.cgi missing authentication | |
Weaknesses | CWE-287 CWE-306 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-05T06:31:07.005Z
Updated: 2025-05-05T13:47:06.365Z
Reserved: 2025-05-04T18:24:44.513Z
Link: CVE-2025-4268

Updated: 2025-05-05T13:46:37.075Z

Status : Analyzed
Published: 2025-05-05T07:15:47.073
Modified: 2025-05-07T16:38:18.700
Link: CVE-2025-4268

No data.