📦 Cp300 Firmware

by Totolink

🔍 What is Cp300 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-36782

CRITICAL CVSS 9.8 Jun 3, 2024

This vulnerability allows attackers to gain root access to TOTOLINK CP300 routers by using a hardcoded password found in a sample configuration file. Anyone using the affected firmware version is vuln...

CVE-2023-36955

CRITICAL CVSS 9.8 Oct 16, 2023

This vulnerability allows remote attackers to execute arbitrary code on TOTOLINK CP300+ routers by exploiting a stack overflow in the UploadCustomModule function. Attackers can achieve full system com...

CVE-2023-36953

CRITICAL CVSS 9.8 Oct 16, 2023

CVE-2023-36953 is a command injection vulnerability in TOTOLINK CP300+ routers that allows attackers to execute arbitrary commands on affected devices. This affects users of TOTOLINK CP300+ routers ru...

CVE-2023-36952

CRITICAL CVSS 9.8 Oct 16, 2023

CVE-2023-36952 is a critical stack overflow vulnerability in TOTOLINK CP300+ routers that allows remote attackers to execute arbitrary code by sending specially crafted requests to the setDiagnosisCfg...

CVE-2023-31856

CRITICAL CVSS 9.8 May 16, 2023

This CVE describes a command injection vulnerability in TOTOLINK CP300+ routers that allows attackers to execute arbitrary commands via crafted HTTP packets. Attackers can exploit this to gain full co...