CVE-2025-28039 – TOTOLINK EX1200T Remote Command Execution Vulnerability

The following table lists the changes that have been made to the
CVE-2025-28039 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by [email protected]

    Apr. 22, 2025

    Action Type Old Value New Value
    Added Description TOTOLINK EX1200T V4.1.2cu.5232_B20210713 was found to contain a pre-auth remote command execution vulnerability in the setUpgradeFW function through the FileName parameter.
    Added Reference https://locrian-lightning-dc7.notion.site/RCE2-1ad8e5e2b1a280fbb0cacc7e758e7299
Share the Post:

Related Posts