CVE-2025-28034: OS Command Injection
TOTOLINK A800R V4.1.2cu.5137B20200730, A810R V4.1.2cu.5182B20201026, A830R V4.1.2cu.5182B20201102, A950RG V4.1.2cu.5161B20200903, A3000RU V5.9c.5185B20201128, and A3100R V4.1.2cu.5247B20211129 were found to contain a pre-auth remote command execution vulnerability in the NTPSyncWithHost function through the hostTime parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-28034?
CVE-2025-28034 has been classified as a critical severity vulnerability due to its potential for pre-auth remote command execution.
How do I fix CVE-2025-28034?
To remediate CVE-2025-28034, users should update their TOTOLINK devices to the latest firmware version provided by the manufacturer.
Which devices are affected by CVE-2025-28034?
CVE-2025-28034 affects multiple TOTOLINK devices, including A800R, A810R, A830R, A950RG, A3000RU, and A3100R models.
What type of vulnerability is CVE-2025-28034?
CVE-2025-28034 is a pre-authentication remote command execution vulnerability exploited through the NTPSyncWithHost function.
How can I determine if my device is vulnerable to CVE-2025-28034?
To check if your device is vulnerable to CVE-2025-28034, verify if it is running the affected firmware versions specified for the listed TOTOLINK models.