Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-12187 | TOTOLINK A810R V4.1.2cu.5182_B20201026 and A950RG V4.1.2cu.5161_B20200903 were found to contain a pre-auth remote command execution vulnerability in the setDiagnosisCfg function through the ipDomain parameter. |
Tue, 29 Apr 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Totolink
Totolink a810r Totolink a810r Firmware Totolink a950rg Totolink a950rg Firmware |
|
| CPEs | cpe:2.3:h:totolink:a810r:-:*:*:*:*:*:*:* cpe:2.3:h:totolink:a950rg:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:a810r_firmware:4.1.2cu.5182_b20201026:*:*:*:*:*:*:* cpe:2.3:o:totolink:a950rg_firmware:4.1.2cu.5182_b20201026:*:*:*:*:*:*:* |
|
| Vendors & Products |
Totolink
Totolink a810r Totolink a810r Firmware Totolink a950rg Totolink a950rg Firmware |
Wed, 23 Apr 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-78 | |
| Metrics |
cvssV3_1
|
Tue, 22 Apr 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | TOTOLINK A810R V4.1.2cu.5182_B20201026 and A950RG V4.1.2cu.5161_B20200903 were found to contain a pre-auth remote command execution vulnerability in the setDiagnosisCfg function through the ipDomain parameter. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-23T15:59:33.765Z
Reserved: 2025-03-11T00:00:00.000Z
Link: CVE-2025-28037
No data.
Status : Analyzed
Published: 2025-04-22T16:15:45.370
Modified: 2025-04-29T16:03:42.887
Link: CVE-2025-28037
No data.
OpenCVE Enrichment
No data.
EUVD