Vulnerabilities > Totolink > A800R Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2022-08-29 CVE-2022-36611 Use of Hard-coded Credentials vulnerability in Totolink A800R Firmware 4.1.2Cu.5137B20200730
TOTOLINK A800R V4.1.2cu.5137_B20200730 was discovered to contain a hardcoded password for root at /etc/shadow.sample.
local
low complexity
totolink CWE-798
7.8
2022-07-06 CVE-2022-28935 Command Injection vulnerability in Totolink products
Totolink A830R V5.9c.4729_B20191112, Totolink A3100R V4.1.2cu.5050_B20200504, Totolink A950RG V4.1.2cu.5161_B20200903, Totolink A800R V4.1.2cu.5137_B20200730, Totolink A3000RU V5.9c.5185_B20201128, Totolink A810R V4.1.2cu.5182_B20201026 were discovered to contain a command injection vulnerability.
network
low complexity
totolink CWE-77
7.2