Total vulnerabilities in the database
Incorrect access control in formPasswordSetup in TOTOLINK A3002RU version 1.0.8 allows attackers to change the admin user's password via an unauthenticated POST request.
Software | From | Fixed in |
---|---|---|
totolink / a3002ru_firmware | 1.0.8 | 1.0.8.x |