Vulnerability Database

296,855

Total vulnerabilities in the database

CVE-2025-28037

TOTOLINK A810R V4.1.2cu.5182_B20201026 and A950RG V4.1.2cu.5161_B20200903 were found to contain a pre-auth remote command execution vulnerability in the setDiagnosisCfg function through the ipDomain parameter.

No technical information available.

No CWE or OWASP classifications available.

Software From Fixed in
totolink / a810r_firmware 4.1.2cu.5182_b20201026 4.1.2cu.5182_b20201026.x
totolink / a950rg_firmware 4.1.2cu.5182_b20201026 4.1.2cu.5182_b20201026.x