Metrics
Affected Vendors & Products
Wed, 04 Jun 2025 20:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Totolink
Totolink a3002r Totolink a3002r Firmware |
|
CPEs | cpe:2.3:h:totolink:a3002r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:a3002r_firmware:2.1.1-b20230720.1011:*:*:*:*:*:*:* |
|
Vendors & Products |
Totolink
Totolink a3002r Totolink a3002r Firmware |
Mon, 19 May 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 18 May 2025 04:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as problematic, has been found in TOTOLINK A3002R 2.1.1-B20230720.1011. This issue affects some unknown processing of the component VPN Page. The manipulation of the argument Comment leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |
Title | TOTOLINK A3002R VPN Page cross site scripting | |
Weaknesses | CWE-79 CWE-94 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-18T03:50:12.393Z
Updated: 2025-05-19T14:27:57.265Z
Reserved: 2025-05-16T15:16:24.767Z
Link: CVE-2025-4852

Updated: 2025-05-19T14:27:47.405Z

Status : Analyzed
Published: 2025-05-18T04:15:28.157
Modified: 2025-06-04T20:10:34.490
Link: CVE-2025-4852

No data.