Home/Product/totolink a7100ru firmware
Product

totolink a7100ru firmware

37 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-44655
all versions
In TOTOLink A7100RU V7.4, A950RG V5.9, and T10 V5.9, the chroot_local_user option is enabled in the vsftpd.conf. This could lead t
9.8CRITICAL
CVE-2023-7095
all versions
A vulnerability, which was classified as critical, has been found in Totolink A7100RU 7.4cu.2313_B20191024. Affected by this issue
9.8CRITICAL
CVE-2023-6906
all versions
A vulnerability, which was classified as critical, was found in Totolink A7100RU 7.4cu.2313_B20191024. Affected is the function ma
9.8CRITICAL
CVE-2023-33556
all versions
TOTOLink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the staticGw parameter at /
9.8CRITICAL
CVE-2023-30054
all versions
TOTOLINK A7100RU V7.4cu.2313_B20191024 has a Command Injection vulnerability. An attacker can obtain a stable root shell through a
9.8CRITICAL
CVE-2023-30053
all versions
TOTOLINK A7100RU V7.4cu.2313_B20191024 is vulnerable to Command Injection.
9.8CRITICAL
CVE-2023-26978
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the pppoeAcName parameter a
9.8CRITICAL
CVE-2023-26848
all versions
TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the org parameter at setti
9.8CRITICAL
CVE-2023-27232
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the wanStrategy parameter a
9.8CRITICAL
CVE-2023-27231
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the downBw parameter at /se
9.8CRITICAL
CVE-2023-27229
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the upBw parameter at /sett
9.8CRITICAL
CVE-2023-27135
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the enabled parameter at /s
9.8CRITICAL
CVE-2023-25395
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 router was discovered to contain a command injection vulnerability via the ou parameter at
9.8CRITICAL
CVE-2023-24184
all versions
TOTOLink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability.
9.8CRITICAL
CVE-2023-24238
all versions
TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the city parameter at sett
9.8CRITICAL
CVE-2023-24236
all versions
TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the province parameter at
9.8CRITICAL
CVE-2023-24276
all versions
TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the country parameter at s
9.8CRITICAL
CVE-2022-48126
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the username parameter in t
9.8CRITICAL
CVE-2022-48125
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the password parameter in t
9.8CRITICAL
CVE-2022-48124
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the FileName parameter in t
9.8CRITICAL
CVE-2022-48123
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the servername parameter in
9.8CRITICAL
CVE-2022-48122
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the dayvalid parameter in t
9.8CRITICAL
CVE-2022-48121
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the rsabits parameter in th
9.8CRITICAL
CVE-2022-47853
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 is vulnerable to Command Injection Vulnerability in the httpd service. An attacker can obta
9.8CRITICAL
CVE-2022-46634
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the wscDisabled parameter i
9.8CRITICAL
CVE-2022-46631
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the wscDisabled parameter i
9.8CRITICAL
CVE-2022-44844
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the pass parameter in the s
9.8CRITICAL
CVE-2022-44843
all versions
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the port parameter in the s
9.8CRITICAL
CVE-2022-28584
all versions
It is found that there is a command injection vulnerability in the setWiFiWpsStart interface in TOTOlink A7100RU (v7.4cu.2313_b201
9.8CRITICAL
CVE-2022-28583
all versions
It is found that there is a command injection vulnerability in the setWiFiWpsCfg interface in TOTOlink A7100RU (v7.4cu.2313_b20191
9.8CRITICAL
CVE-2022-28582
all versions
It is found that there is a command injection vulnerability in the setWiFiSignalCfg interface in TOTOlink A7100RU (v7.4cu.2313_b20
9.8CRITICAL
CVE-2022-28581
all versions
It is found that there is a command injection vulnerability in the setWiFiAdvancedCfg interface in TOTOlink A7100RU (v7.4cu.2313_b
9.8CRITICAL
CVE-2022-28580
all versions
It is found that there is a command injection vulnerability in the setL2tpServerCfg interface in TOTOlink A7100RU (v7.4cu.2313_b20
9.8CRITICAL
CVE-2022-28579
all versions
It is found that there is a command injection vulnerability in the setParentalRules interface in TOTOlink A7100RU (v7.4cu.2313_b20
9.8CRITICAL
CVE-2022-28578
all versions
It is found that there is a command injection vulnerability in the setOpenVpnCfg interface in TOTOlink A7100RU (v7.4cu.2313_b20191
9.8CRITICAL
CVE-2022-28577
all versions
It is found that there is a command injection vulnerability in the delParentalRules interface in TOTOlink A7100RU (v7.4cu.2313_b20
9.8CRITICAL
CVE-2022-28575
all versions
It is found that there is a command injection vulnerability in the setopenvpnclientcfg interface in TOTOlink A7100RU (v7.4cu.2313_
9.8CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin