Metrics
Affected Vendors & Products
Fri, 23 May 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Totolink
Totolink a3002r Totolink a3002r Firmware Totolink a3002ru Totolink a3002ru Firmware Totolink a702r Totolink a702r Firmware |
|
CPEs | cpe:2.3:h:totolink:a3002r:-:*:*:*:*:*:*:* cpe:2.3:h:totolink:a3002ru:-:*:*:*:*:*:*:* cpe:2.3:h:totolink:a702r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:a3002r_firmware:3.0.0-b20230809.1615:*:*:*:*:*:*:* cpe:2.3:o:totolink:a3002ru_firmware:3.0.0-b20230809.1615:*:*:*:*:*:*:* cpe:2.3:o:totolink:a702r_firmware:3.0.0-b20230809.1615:*:*:*:*:*:*:* |
|
Vendors & Products |
Totolink
Totolink a3002r Totolink a3002r Firmware Totolink a3002ru Totolink a3002ru Firmware Totolink a702r Totolink a702r Firmware |
Mon, 19 May 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sat, 17 May 2025 09:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. It has been rated as critical. Affected by this issue is the function submit-url of the file /boafrm/formReflashClientTbl of the component HTTP POST Request Handler. The manipulation leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |
Title | TOTOLINK A702R/A3002R/A3002RU HTTP POST Request formReflashClientTbl submit-url buffer overflow | |
Weaknesses | CWE-119 CWE-120 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-17T09:31:06.557Z
Updated: 2025-05-19T15:23:57.444Z
Reserved: 2025-05-16T13:21:58.489Z
Link: CVE-2025-4823

Updated: 2025-05-19T15:18:50.209Z

Status : Analyzed
Published: 2025-05-17T10:15:21.023
Modified: 2025-05-23T15:48:37.327
Link: CVE-2025-4823

No data.