cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-7170,https://securityvulnerability.io/vulnerability/CVE-2024-7170,Vulnerability in TOTOLINK's A3000RU 5.9c.5185due to Hard-Coded Password,"A problematic vulnerability has been identified in the TOTOLINK A3000RU router, specifically in version 5.9c.5185, where the file /web_cste/cgi-bin/product.ini contains hard-coded passwords. This security flaw allows for unauthorized access and manipulation of configuration settings, posing a significant risk to network integrity. The vulnerability was publicly disclosed despite early vendor notification, raising concerns about timely security responses and user safety.",TOTOLINK,A3000ru Firmware,8.8,HIGH,0.0007200000109151006,false,,false,false,false,,,false,false,,2024-07-28T22:15:00.000Z,0 CVE-2022-36615,https://securityvulnerability.io/vulnerability/CVE-2022-36615,Hardcoded Password Vulnerability in TOTOLINK A3000RU Router,"A security issue has been identified in the TOTOLINK A3000RU router, where a hardcoded password for the root user is embedded within the system files at /etc/shadow.sample. This vulnerability can potentially allow unauthorized access to the device and compromise network security. Users of the affected version are advised to take immediate steps to secure their devices by changing default settings and implementing best security practices.",Totolink,A3000ru Firmware,7.8,HIGH,0.0011399999493733048,false,,false,false,false,,,false,false,,2022-08-29T00:15:00.000Z,0 CVE-2022-25075,https://securityvulnerability.io/vulnerability/CVE-2022-25075,Command Injection Vulnerability in TOTOLink A3000RU by TOTOLink,"The TOTOLink A3000RU router version V5.9c.2280_B20180512 is susceptible to a command injection vulnerability in its 'Main' function. This security flaw enables attackers to execute arbitrary commands by manipulating the QUERY_STRING parameter, potentially compromising the device and the network it operates within.",Totolink,A3000ru Firmware,9.8,CRITICAL,0.00546000013127923,false,,false,false,false,,,false,false,,2022-02-24T15:15:00.000Z,0