Metrics
Affected Vendors & Products
Tue, 22 Apr 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Totolink
Totolink a3700r Totolink a3700r Firmware |
|
Weaknesses | NVD-CWE-Other | |
CPEs | cpe:2.3:h:totolink:a3700r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:a3700r_firmware:9.1.2u.5822_b20200513:*:*:*:*:*:*:* |
|
Vendors & Products |
Totolink
Totolink a3700r Totolink a3700r Firmware |
Thu, 17 Apr 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
ssvc
|
Wed, 16 Apr 2025 03:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in TOTOLINK A3700R 9.1.2u.5822_B20200513 and classified as critical. Affected by this vulnerability is the function setSmartQosCfg of the file /cgi-bin/cstecgi.cgi. The manipulation leads to improper access controls. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | TOTOLINK A3700R cstecgi.cgi setSmartQosCfg access control | |
Weaknesses | CWE-266 CWE-284 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-04-16T03:00:20.945Z
Updated: 2025-04-17T13:56:27.556Z
Reserved: 2025-04-15T20:46:45.539Z
Link: CVE-2025-3665

Updated: 2025-04-17T13:33:44.067Z

Status : Analyzed
Published: 2025-04-16T03:15:18.057
Modified: 2025-04-22T16:54:19.520
Link: CVE-2025-3665

No data.