cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-36616,https://securityvulnerability.io/vulnerability/CVE-2022-36616,Hardcoded Password Vulnerability in TOTOLINK A810R Routers,"TOTOLINK A810R routers contain a vulnerability where a hardcoded password for the root user is embedded in the firmware. This issue arises from the presence of a hardcoded credential in the file /etc/shadow.sample, which can lead to unauthorized access if exploited. Users of the affected versions are advised to take immediate action to secure their devices.",Totolink,A810r Firmware,7.8,HIGH,0.0011399999493733048,false,,false,false,false,,,false,false,,2022-08-29T00:15:00.000Z,0 CVE-2022-38511,https://securityvulnerability.io/vulnerability/CVE-2022-38511,Command Injection Vulnerability in TOTOLINK A810R Router,"A command injection vulnerability exists in the TOTOLINK A810R router where an attacker can exploit the 'downloadFile.cgi' component. This flaw allows unauthorized users to execute arbitrary commands on the system, potentially compromising sensitive data and the integrity of the device. Users are urged to patch their systems immediately to mitigate the risks associated with this vulnerability.",Totolink,A810r Firmware,7.8,HIGH,0.0010999999940395355,false,,false,false,false,,,false,false,,2022-08-29T00:15:00.000Z,0 CVE-2022-25079,https://securityvulnerability.io/vulnerability/CVE-2022-25079,Command Injection Vulnerability in TOTOLink Router,"The TOTOLink A810R router is affected by a command injection vulnerability within its 'Main' function. This security flaw allows attackers to execute arbitrary commands by manipulating the QUERY_STRING parameter. Successful exploitation could lead to unauthorized access and compromise the device's functionality, posing significant risks to network integrity and user data.",Totolink,A810r Firmware,9.8,CRITICAL,0.00546000013127923,false,,false,false,false,,,false,false,,2022-02-24T15:15:00.000Z,0