CVE-2022-40109: Critical severity TOTOLINK A3002R Firmware vulnerability
Published Sep 6, 2022
·Updated
TOTOLINK A3002R TOTOLINK-A3002R-He-V1.1.1-B20200824.0128 is vulnerable to Insecure Permissions via binary /bin/boa.
Affected Software
4 affected components
TOTOLINK A3002R Firmware=1.1.1-b20200824.0128
TOTOLINK A3002R
All of the following
TOTOLINK A3002R Firmware=1.1.1-b20200824.0128
TOTOLINK A3002R
Event History
Sep 6, 2022
CVE Published
via MITRE·04:46 PM
Data Sourced
via MITRE·04:46 PM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-40109.
2
What is the severity of CVE-2022-40109?
The severity of CVE-2022-40109 is critical with a CVSS score of 9.8.
3
What is the affected software for CVE-2022-40109?
The affected software for CVE-2022-40109 is Totolink A3002r Firmware version 1.1.1-b20200824.0128.
4
How can I fix CVE-2022-40109?
To fix CVE-2022-40109, it is recommended to update to the latest firmware version provided by Totolink.
5
Is TOTOLINK A3002R vulnerable to CVE-2022-40109?
No, TOTOLINK A3002R is not vulnerable to CVE-2022-40109.