Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
t10 vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2025-5902
A vulnerability was found in TOTOLINK T10 4.1.8cu.5207 and classified as critical. This issue affects the function setUpgradeFW of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. The manipulation of the argument slaveIpList leads to buffer overflow. The attac...
Totolink T10
8.8
CVSSv3
CVE-2025-5901
A vulnerability has been found in TOTOLINK T10 4.1.8cu.5207 and classified as critical. This vulnerability affects the function UploadCustomModule of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. The manipulation of the argument File leads to buffer overflo...
Totolink T10
8.8
CVSSv3
CVE-2025-5905
A vulnerability was found in TOTOLINK T10 4.1.8cu.5207. It has been rated as critical. Affected by this issue is the function setWiFiRepeaterCfg of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. The manipulation of the argument Password leads to buffer overf...
Totolink T10
8.8
CVSSv3
CVE-2025-5904
A vulnerability was found in TOTOLINK T10 4.1.8cu.5207. It has been declared as critical. Affected by this vulnerability is the function setWiFiMeshName of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. The manipulation of the argument device_name leads to b...
Totolink T10
8.8
CVSSv3
CVE-2025-5903
A vulnerability was found in TOTOLINK T10 4.1.8cu.5207. It has been classified as critical. Affected is the function setWiFiAclRules of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. The manipulation of the argument desc leads to buffer overflow. It is possi...
Totolink T10
9.8
CVSSv3
CVE-2022-25137
A command injection vulnerability in the function recvSlaveUpgstatus of TOTOLINK Technology routers T6 V3_Firmware T6_V3_V4.1.5cu.748_B20211015 and T10 V2_Firmware V4.1.8cu.5207_B20210320 allows malicious users to execute arbitrary commands via a crafted MQTT packet.
Totolink T6 Firmware V4.1.5cu.748 B20211015
Totolink T10 Firmware V4.1.8cu.5207 B20210320
9.8
CVSSv3
CVE-2022-25131
A command injection vulnerability in the function recvSlaveCloudCheckStatus of TOTOLINK Technology routers T6 V3_Firmware T6_V3_V4.1.5cu.748_B20211015 and T10 V2_Firmware V4.1.8cu.5207_B20210320 allows malicious users to execute arbitrary commands via a crafted MQTT packet.
Totolink T6 Firmware V4.1.5cu.748 B20211015
Totolink T10 Firmware V4.1.8cu.5207 B20210320
9.8
CVSSv3
CVE-2022-25136
A command injection vulnerability in the function meshSlaveUpdate of TOTOLINK Technology routers T6 V3_Firmware T6_V3_V4.1.5cu.748_B20211015 and T10 V2_Firmware V4.1.8cu.5207_B20210320 allows malicious users to execute arbitrary commands via a crafted MQTT packet.
Totolink T6 Firmware V4.1.5cu.748 B20211015
Totolink T10 Firmware V4.1.8cu.5207 B20210320
9.8
CVSSv3
CVE-2022-25130
A command injection vulnerability in the function updateWifiInfo of TOTOLINK Technology routers T6 V3_Firmware T6_V3_V4.1.5cu.748_B20211015 and T10 V2_Firmware V4.1.8cu.5207_B20210320 allows malicious users to execute arbitrary commands via a crafted MQTT packet.
Totolink T6 Firmware V4.1.5cu.748 B20211015
Totolink T10 Firmware V4.1.8cu.5207 B20210320
9.8
CVSSv3
CVE-2022-25132
A command injection vulnerability in the function meshSlaveDlfw of TOTOLINK Technology router T6 V3_Firmware T6_V3_V4.1.5cu.748_B20211015 allows malicious users to execute arbitrary commands via a crafted MQTT packet.
Totolink T6 Firmware V4.1.5cu.748 B20211015
Totolink T10 Firmware V4.1.8cu.5207 B20210320
Preferred Score:
CVSSv3
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
jasmin ransomware
CVE-2025-6110
code execution
CVE-2025-21420
reflected XSS
CVE-2025-5336
wp url shortener
CVE-2025-49113
gr-5400ax
overflow
CVE-2025-6062
letta-ai
CVE-2025-50143
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »