📦 Ex1200t Firmware

by Totolink

🔍 What is Ex1200t Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-5600

CRITICAL CVSS 9.8 Jun 4, 2025

A critical stack-based buffer overflow vulnerability in TOTOLINK EX1200T routers allows remote attackers to execute arbitrary code by manipulating the LangType parameter in the setLanguageCfg function...

CVE-2021-42890

CRITICAL CVSS 9.8 Jun 3, 2022

CVE-2021-42890 is a critical remote command injection vulnerability in TOTOLINK EX1200T routers that allows unauthenticated attackers to execute arbitrary commands with root privileges by exploiting t...

CVE-2021-42887

CRITICAL CVSS 9.8 Jun 3, 2022

This vulnerability allows unauthenticated attackers to bypass the login mechanism on TOTOLINK EX1200T routers by sending a specially crafted request to formLoginAuth.htm. Affected users are those runn...

CVE-2021-42884

CRITICAL CVSS 9.8 Jun 3, 2022

CVE-2021-42884 is a remote command injection vulnerability in TOTOLINK EX1200T routers that allows unauthenticated attackers to execute arbitrary commands with root privileges by manipulating the devi...

CVE-2021-42872

CRITICAL CVSS 9.8 Jun 2, 2022

This CVE describes a command injection vulnerability in TOTOLINK EX1200T routers that allows remote attackers to execute arbitrary commands on affected devices. Attackers can exploit this vulnerabilit...

CVE-2025-6568

HIGH CVSS 8.8 Jun 24, 2025

A critical buffer overflow vulnerability in TOTOLINK EX1200T routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formIpv6Setup endp...

CVE-2025-6393

HIGH CVSS 8.8 Jun 21, 2025

This critical buffer overflow vulnerability in TOTOLINK routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formIPv6Addr endpoint. ...

CVE-2025-6302

HIGH CVSS 8.8 Jun 20, 2025

A critical stack-based buffer overflow vulnerability in TOTOLINK EX1200T routers allows remote attackers to execute arbitrary code by manipulating the Comment parameter in the setStaticDhcpConfig func...

CVE-2025-6162

HIGH CVSS 8.8 Jun 17, 2025

A critical buffer overflow vulnerability in TOTOLINK EX1200T routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formMultiAP endpoi...

CVE-2025-6143

HIGH CVSS 8.8 Jun 16, 2025

This critical vulnerability in TOTOLINK EX1200T routers allows remote attackers to execute arbitrary code via a buffer overflow in the HTTP POST request handler. Attackers can exploit this by sending ...

CVE-2025-6145

HIGH CVSS 8.8 Jun 16, 2025

This critical vulnerability in TOTOLINK EX1200T routers allows remote attackers to execute arbitrary code via a buffer overflow in the HTTP POST request handler. Attackers can exploit this by manipula...

CVE-2025-6129

HIGH CVSS 8.8 Jun 16, 2025

A critical buffer overflow vulnerability in TOTOLINK EX1200T routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formSaveConfig end...

CVE-2025-5910

HIGH CVSS 8.8 Jun 10, 2025

This critical vulnerability in TOTOLINK EX1200T routers allows remote attackers to execute arbitrary code via a buffer overflow in the HTTP POST request handler. Attackers can exploit this without aut...

CVE-2025-5908

HIGH CVSS 8.8 Jun 10, 2025

A critical buffer overflow vulnerability in TOTOLINK EX1200T routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formIpQoS endpoint...

CVE-2025-5792

HIGH CVSS 8.8 Jun 6, 2025

A critical buffer overflow vulnerability in TOTOLINK EX1200T routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the /boafrm/formWlanRedirect e...

CVE-2021-42893

HIGH CVSS 7.5 Jun 3, 2022

CVE-2021-42893 is an information disclosure vulnerability in TOTOLINK EX1200T routers where attackers can access sensitive configuration data including Wi-Fi passwords without authentication. This aff...

CVE-2021-42889

HIGH CVSS 7.5 Jun 3, 2022

This vulnerability in TOTOLINK EX1200T routers allows unauthenticated attackers to retrieve sensitive WiFi configuration information including network names and encryption keys. It affects users of sp...

CVE-2021-42886

HIGH CVSS 7.5 Jun 3, 2022

CVE-2021-42886 allows unauthenticated attackers to download the apmib configuration file from TOTOLINK EX1200T routers, exposing usernames and passwords in decoded form. This affects all users of vuln...

CVE-2022-25008

HIGH CVSS 8.8 Mar 30, 2022

This CVE describes a missing authentication mechanism in totolink EX300_v2 and EX1200T routers, allowing attackers to access administrative functions without credentials. This affects users running vu...