Metrics
Affected Vendors & Products
Wed, 28 May 2025 15:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Totolink
         Totolink a6000r Totolink a6000r Firmware  | 
|
| CPEs | cpe:2.3:h:totolink:a6000r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:a6000r_firmware:1.0.1-b20201211.2000:*:*:*:*:*:*:*  | 
|
| Vendors & Products | 
        
        Totolink
         Totolink a6000r Totolink a6000r Firmware  | 
Fri, 04 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Fri, 04 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability classified as critical was found in TOTOLINK A6000R 1.0.1-B20201211.2000. Affected by this vulnerability is the function apcli_cancel_wps of the file /usr/lib/lua/luci/controller/mtkwifi.lua. The manipulation leads to command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | TOTOLINK A6000R mtkwifi.lua apcli_cancel_wps command injection | |
| Weaknesses | CWE-74 CWE-77  | 
|
| References | 
         | |
| Metrics | 
        
        cvssV2_0
         
 
 
 
  | 
Status: PUBLISHED
Assigner: VulDB
Published: 2025-04-04T14:00:15.508Z
Updated: 2025-04-04T14:29:11.138Z
Reserved: 2025-04-04T07:23:14.379Z
Link: CVE-2025-3249
Updated: 2025-04-04T14:28:11.570Z
Status : Analyzed
Published: 2025-04-04T14:15:25.453
Modified: 2025-05-28T15:15:07.290
Link: CVE-2025-3249
No data.