TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the FileName parameter in the setUpgradeFW function.
2024-04-08T13:15:08.700
2025-03-18T16:03:53.180
Analyzed
CVSSv3.1: 8.8 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | totolink | ex200_firmware | 4.0.3c.7646_b20201211 | Yes |
| Hardware | totolink | ex200 | - | No |