Metrics
Affected Vendors & Products
Wed, 07 May 2025 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Totolink
Totolink a720r Totolink a720r Firmware |
|
Weaknesses | NVD-CWE-Other | |
CPEs | cpe:2.3:h:totolink:a720r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:a720r_firmware:4.1.5cu.374:*:*:*:*:*:*:* |
|
Vendors & Products |
Totolink
Totolink a720r Totolink a720r Firmware |
Mon, 05 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 05 May 2025 07:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in TOTOLINK A720R 4.1.5cu.374 and classified as critical. This issue affects some unknown processing of the file /cgi-bin/cstecgi.cgi of the component Log Handler. The manipulation of the argument topicurl with the input clearDiagnosisLog/clearSyslog/clearTracerouteLog leads to improper access controls. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |
Title | TOTOLINK A720R Log cstecgi.cgi access control | |
Weaknesses | CWE-266 CWE-284 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-05T07:00:06.643Z
Updated: 2025-05-05T13:25:55.775Z
Reserved: 2025-05-04T18:24:46.975Z
Link: CVE-2025-4269

Updated: 2025-05-05T13:25:15.316Z

Status : Analyzed
Published: 2025-05-05T07:15:48.233
Modified: 2025-05-07T16:38:25.260
Link: CVE-2025-4269

No data.