Vulnerabilities > Totolink > A720R Firmware > 4.1.5cu.532.b20210610

DATE CVE VULNERABILITY TITLE RISK
2023-02-17 CVE-2023-23064 Incorrect Authorization vulnerability in Totolink A720R Firmware 4.1.5Cu.532B20210610
TOTOLINK A720R V4.1.5cu.532_ B20210610 is vulnerable to Incorrect Access Control.
network
low complexity
totolink CWE-863
critical
9.8
2022-08-25 CVE-2022-36456 OS Command Injection vulnerability in Totolink A720R Firmware 4.1.5Cu.532B20210610
TOTOLink A720R V4.1.5cu.532_B20210610 was discovered to contain a command injection vulnerability via the username parameter in /cstecgi.cgi.
local
low complexity
totolink CWE-78
7.8