We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-28034



Description

TOTOLINK A800R V4.1.2cu.5137_B20200730, A810R V4.1.2cu.5182_B20201026, A830R V4.1.2cu.5182_B20201102, A950RG V4.1.2cu.5161_B20200903, A3000RU V5.9c.5185_B20201128, and A3100R V4.1.2cu.5247_B20211129 were found to contain a pre-auth remote command execution vulnerability in the NTPSyncWithHost function through the hostTime parameter.

Reserved 2025-03-11 | Published 2025-04-22 | Updated 2025-04-23 | Assigner mitre

References

locrian-lightning-dc7.notion.site/...bf53d868f1b1a711?pvs=74

cve.org (CVE-2025-28034)

nvd.nist.gov (CVE-2025-28034)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-28034

Support options

Helpdesk Chat, Email, Knowledgebase