📦 A6000r Firmware

by Totolink

🔍 What is A6000r Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-41319

CRITICAL CVSS 9.8 Jul 23, 2024

This CVE describes a command injection vulnerability in TOTOLINK A6000R routers that allows attackers to execute arbitrary commands on the device via the cmd parameter in the webcmd function. Attacker...

CVE-2024-41316

CRITICAL CVSS 9.8 Jul 22, 2024

This vulnerability allows remote attackers to execute arbitrary commands on TOTOLINK A6000R routers by injecting malicious commands through the ifname parameter in the apcli_cancel_wps function. Attac...

CVE-2024-41318

CRITICAL CVSS 9.8 Jul 22, 2024

This CVE describes a command injection vulnerability in TOTOLINK A6000R routers that allows attackers to execute arbitrary commands on the device. The vulnerability exists in the apcli_wps_gen_pincode...

CVE-2024-57211

HIGH CVSS 8.0 Jan 10, 2025

This CVE describes a command injection vulnerability in TOTOLINK A6000R routers that allows attackers to execute arbitrary commands on the device. Attackers can exploit this by sending specially craft...

CVE-2024-37626

HIGH CVSS 8.8 Jun 20, 2024

This CVE describes a command injection vulnerability in TOTOLINK A6000R routers that allows remote attackers to execute arbitrary code via the iface parameter. Attackers can potentially take full cont...

CVE-2025-3249

MEDIUM CVSS 6.3 Apr 4, 2025

This critical vulnerability in TOTOLINK A6000R routers allows remote attackers to execute arbitrary commands via command injection in the apcli_cancel_wps function. Attackers can exploit this to gain ...

CVE-2024-57214

MEDIUM CVSS 6.3 Jan 10, 2025

This CVE describes a command injection vulnerability in TOTOLINK A6000R routers where an attacker can execute arbitrary commands via the devname parameter in the reset_wifi function. This affects user...

CVE-2024-57212

MEDIUM CVSS 5.1 Jan 10, 2025

This CVE describes a command injection vulnerability in TOTOLINK A6000R routers that allows attackers to execute arbitrary commands via the opmode parameter in the action_reboot function. Attackers wi...

CVE-2024-41315

MEDIUM CVSS 6.8 Jul 22, 2024

This CVE describes a command injection vulnerability in TOTOLINK A6000R routers that allows attackers to execute arbitrary commands on the device. The vulnerability exists in the apcli_do_enr_pin_wps ...