Metrics
Affected Vendors & Products
Wed, 07 May 2025 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Totolink
Totolink a720r Totolink a720r Firmware |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:h:totolink:a720r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:a720r_firmware:4.1.5cu.374:*:*:*:*:*:*:* |
|
Vendors & Products |
Totolink
Totolink a720r Totolink a720r Firmware |
Mon, 05 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 05 May 2025 07:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in TOTOLINK A720R 4.1.5cu.374. It has been classified as problematic. Affected is an unknown function of the file /cgi-bin/cstecgi.cgi of the component Config Handler. The manipulation of the argument topicurl with the input getInitCfg/getSysStatusCfg leads to information disclosure. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | TOTOLINK A720R Config cstecgi.cgi information disclosure | |
Weaknesses | CWE-200 CWE-284 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-05T07:31:07.013Z
Updated: 2025-05-05T13:20:24.606Z
Reserved: 2025-05-04T18:24:51.372Z
Link: CVE-2025-4270

Updated: 2025-05-05T13:20:13.639Z

Status : Analyzed
Published: 2025-05-05T08:15:15.607
Modified: 2025-05-07T16:38:30.767
Link: CVE-2025-4270

No data.