Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-28039


TOTOLINK EX1200T V4.1.2cu.5232_B20210713 was found to contain a pre-auth remote command execution vulnerability in the setUpgradeFW function through the FileName parameter.


Published

2025-04-22T18:15:59.500

Last Modified

2025-04-29T16:01:14.980

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-78

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System totolink ex1200t_firmware 4.1.2cu.5232_b20210713 Yes
Hardware totolink ex1200t - No

References