Skip to content

Known CVE

TOTOLINK A3700R - Command Injection

An issue in TOTOLINK A3700R v.9.1.2u.6165_20211012 allows a remote attacker to execute arbitrary code via the FileName parameter of the UploadFirmwareFile function.

CVE-2023-46574

Critical2023CVSS 9.8CWE-77

cve2023 · totolink · router · iot · rce · vkev · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website