VendorsTOTOLINKa3300r_firmware17.0.0cu.596_b20250515
Vulnerabilities

TOTOLINK A3300R Firmware 17.0.0cu.596_b20250515

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2025-52046
Totolink A3300R V17.0.0cu.596_B20250515 was found to contain a command injection vulnerability in the sub_4197C0 function via the mac and desc parameters. This vulnerability allows unauthenticated attackers to execute arbitrary commands via a crafted request.
Published 2025-07-17 · Analyzed
9.8EPSS 0.055
CVE-2025-55901
TOTOLINK A3300R V17.0.0cu.596_B20250515 is vulnerable to command injection in the function NTPSyncWithHost via the host_time parameter.
Published 2025-12-15 · Analyzed
6.5EPSS 0.011