📦 A702r Firmware

by Totolink

🔍 What is A702r Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-9783

HIGH CVSS 8.8 Sep 1, 2025

A buffer overflow vulnerability in TOTOLINK A702R routers allows remote attackers to execute arbitrary code by manipulating the submit-url parameter in the formParentControl function. This affects TOT...

CVE-2025-9782

HIGH CVSS 8.8 Sep 1, 2025

This CVE describes a buffer overflow vulnerability in TOTOLINK A702R routers that allows remote attackers to execute arbitrary code by manipulating the submit-url parameter. The vulnerability affects ...

CVE-2025-9780

HIGH CVSS 8.8 Sep 1, 2025

This vulnerability is a remote buffer overflow in TOTOLINK A702R routers affecting the formIpQoS function. Attackers can exploit it remotely by manipulating MAC address arguments, potentially leading ...

CVE-2025-8139

HIGH CVSS 8.8 Jul 25, 2025

This critical vulnerability in TOTOLINK A702R routers allows remote attackers to execute arbitrary code via a buffer overflow in the HTTP POST request handler. Attackers can exploit this by manipulati...

CVE-2025-8138

HIGH CVSS 8.8 Jul 25, 2025

This critical vulnerability in TOTOLINK A702R routers allows remote attackers to execute arbitrary code via buffer overflow in the HTTP POST request handler. Attackers can exploit this by manipulating...

CVE-2025-8136

HIGH CVSS 8.8 Jul 25, 2025

This critical vulnerability in TOTOLINK A702R routers allows remote attackers to execute arbitrary code via a buffer overflow in the HTTP POST request handler. Attackers can exploit this by sending sp...

CVE-2025-6825

HIGH CVSS 8.8 Jun 28, 2025

A critical buffer overflow vulnerability in TOTOLINK A702R routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formWlSiteSurvey end...

CVE-2025-6393

HIGH CVSS 8.8 Jun 21, 2025

This critical buffer overflow vulnerability in TOTOLINK routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formIPv6Addr endpoint. ...

CVE-2025-6147

HIGH CVSS 8.8 Jun 17, 2025

A critical buffer overflow vulnerability in TOTOLINK A702R routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formSysLog endpoint....

CVE-2025-4835

HIGH CVSS 8.8 May 17, 2025

This critical buffer overflow vulnerability in TOTOLINK routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formWlanRedirect endpoi...

CVE-2025-4834

HIGH CVSS 8.8 May 17, 2025

This critical buffer overflow vulnerability in TOTOLINK routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formSetLg endpoint. Att...

CVE-2025-4832

HIGH CVSS 8.8 May 17, 2025

This critical buffer overflow vulnerability in TOTOLINK routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formDosCfg endpoint. Th...

CVE-2025-4830

HIGH CVSS 8.8 May 17, 2025

This critical vulnerability in TOTOLINK routers allows remote attackers to execute arbitrary code via a buffer overflow in the HTTP POST request handler. Attackers can exploit this by manipulating the...

CVE-2025-4827

HIGH CVSS 8.8 May 17, 2025

This critical buffer overflow vulnerability in TOTOLINK routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the vulnerable endpoint. Attackers ...

CVE-2025-4823

HIGH CVSS 8.8 May 17, 2025

This critical buffer overflow vulnerability in TOTOLINK routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the vulnerable submit-url function....

CVE-2025-4825

HIGH CVSS 8.8 May 17, 2025

A critical buffer overflow vulnerability in TOTOLINK routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formDMZ endpoint. This aff...