Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-11873 | TOTOLINK X18 v9.1.0cu.2024_B20220329 has an unauthorized arbitrary command execution in the enable parameter' of the sub_41105C function of cstecgi .cgi. |
| Link | Providers |
|---|---|
| https://github.com/LZY0522/CVE/blob/main/X18-sub_41105c.md |
|
Tue, 29 Apr 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Totolink
Totolink x18 Totolink x18 Firmware |
|
| CPEs | cpe:2.3:h:totolink:x18:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:x18_firmware:9.1.0cu.2024_b20220329:*:*:*:*:*:*:* |
|
| Vendors & Products |
Totolink
Totolink x18 Totolink x18 Firmware |
Tue, 22 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-77 | |
| Metrics |
cvssV3_1
|
Fri, 18 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | TOTOLINK X18 v9.1.0cu.2024_B20220329 has an unauthorized arbitrary command execution in the enable parameter' of the sub_41105C function of cstecgi .cgi. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-22T14:49:20.511Z
Reserved: 2025-03-11T00:00:00.000Z
Link: CVE-2025-29209
Updated: 2025-04-22T14:49:15.860Z
Status : Analyzed
Published: 2025-04-18T15:15:58.653
Modified: 2025-04-29T16:23:36.113
Link: CVE-2025-29209
No data.
OpenCVE Enrichment
No data.
EUVD