totolink x6000r firmware Vulnerabilities
CVE security advisories and vulnerability history for x6000r firmware by totolink.
Last updated
Overview
totolink x6000r firmware has 56 published CVE records since 2023, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 19 have a known public exploit. The average CVSS base score across scored CVEs is 9.3.
This page aggregates every publicly disclosed vulnerability (CVE) affecting totolink x6000r firmware, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list. Affected platforms include x6000r.
Severity and exploitation
How the CVSS severity of totolink x6000r firmware's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
In CISA’s Known Exploited Vulnerabilities catalog
0
None of totolink x6000r firmware's CVEs are currently listed in CISA's KEV catalog.
Public exploits
19
19 of totolink x6000r firmware's CVEs have a known public exploit available.
Affected versions and CVEs
Browse every totolink x6000r firmware version named in a CVE, then pick one to see only the CVEs that affect it.
Version ranges
- >= 9.4.0cu.652_b2023011618 CVEs
- >= 9.4.0cu.852_b202307197 CVEs
- <= 9.4.0cu.1360_b202412074 CVEs
- >= 9.4.0cu.1041_b202402241 CVE
56 CVEs
- High · CVSS 8.6EPSS 3.0% (86th pct)2026-03-23
- Critical · CVSS 9.3EPSS 1.3% (68th pct)2025-09-25
- High · CVSS 7.3EPSS 0.9% (55th pct)2025-09-24
- Critical · CVSS 9.3EPSS 13.2% (96th pct)2025-09-24
- High · CVSS 7.0EPSS 7.8% (94th pct)2025-09-23
- Critical · CVSS 9.8EPSS 4.4% (90th pct)2025-09-15
- Medium · CVSS 6.5EPSS 2.2% (80th pct)2025-07-29
- Medium vulnerability · 2025-02-11CVE-2025-25524CWE-120Medium · CVSS 5.1EPSS 0.2% (7th pct)2025-02-11
- Critical vulnerability · 2024-11-22CVE-2024-52723CWE-78Critical · CVSS 9.8EPSS 1.0% (59th pct)2024-11-22
- Medium · CVSS 5.3EPSS 6.2% (93th pct)2024-08-18
- High · CVSS 8.8EPSS 4.0% (89th pct)2024-03-10
- Critical · CVSS 9.8EPSS 14.7% (96th pct)2024-02-23
- Medium · CVSS 5.5EPSS 0.3% (24th pct)2024-02-20
- Critical · CVSS 9.8EPSS 0.9% (55th pct)2024-01-24
- Critical · CVSS 9.8EPSS 0.8% (52th pct)2024-01-24
- Critical · CVSS 9.8EPSS 0.8% (52th pct)2024-01-24
- Critical · CVSS 9.8EPSS 0.9% (58th pct)2024-01-16
- Critical vulnerability · 2024-01-16CVE-2023-52041Public exploitCritical · CVSS 9.8EPSS 0.9% (55th pct)2024-01-16
- Critical · CVSS 9.8EPSS 2.8% (85th pct)2023-12-30
- Critical vulnerability · 2023-12-04CVE-2023-48800Critical · CVSS 9.8EPSS 1.6% (73th pct)2023-12-04
- Critical vulnerability · 2023-12-04CVE-2023-48799Critical · CVSS 9.8EPSS 1.4% (70th pct)2023-12-04
- Critical vulnerability · 2023-12-01CVE-2023-48801Public exploitCritical · CVSS 9.8EPSS 1.7% (75th pct)2023-12-01
- Critical vulnerability · 2023-12-01CVE-2023-43455Critical · CVSS 9.8EPSS 1.5% (72th pct)2023-12-01
- Critical vulnerability · 2023-12-01CVE-2023-43454Public exploitCritical · CVSS 9.8EPSS 1.5% (72th pct)2023-12-01
- Critical vulnerability · 2023-12-01CVE-2023-43453Critical · CVSS 9.8EPSS 1.5% (72th pct)2023-12-01
- Critical vulnerability · 2023-11-30CVE-2023-48812Public exploitCritical · CVSS 9.8EPSS 1.5% (72th pct)2023-11-30
- Critical vulnerability · 2023-11-30CVE-2023-48811Critical · CVSS 9.8EPSS 1.5% (72th pct)2023-11-30
- Critical vulnerability · 2023-11-30CVE-2023-48810Critical · CVSS 9.8EPSS 1.5% (72th pct)2023-11-30
- Critical vulnerability · 2023-11-30CVE-2023-48808Critical · CVSS 9.8EPSS 1.5% (72th pct)2023-11-30
- Critical vulnerability · 2023-11-30CVE-2023-48807Critical · CVSS 9.8EPSS 1.5% (72th pct)2023-11-30
Showing 30 of 56
Common weakness types
The CWE weakness categories most often found in totolink x6000r firmware CVEs. Follow any weakness for its full explanation.
- CWE-77Improper Neutralization of Special Elements used in a Command ('Command Injection')21 CVEs
- CWE-78Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')7 CVEs
- CWE-20Improper Input Validation2 CVEs
- CWE-798Use of Hard-coded Credentials1 CVE
- CWE-306Missing Authentication for Critical Function1 CVE
- CWE-253Incorrect Check of Function Return Value1 CVE
- CWE-120Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1 CVE
Disclosure activity by year
How many totolink x6000r firmware CVEs were published each year.
Other totolink products
Browse vulnerabilities for other products by totolink.
Frequently asked questions
Common questions about totolink x6000r firmware vulnerabilities.
- How many CVEs does totolink x6000r firmware have?
- totolink x6000r firmware has 56 published CVE records since 2023.
- How many totolink x6000r firmware CVEs are in CISA KEV?
- None of totolink x6000r firmware's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
- Are there public exploits for totolink x6000r firmware vulnerabilities?
- Yes — 19 of totolink x6000r firmware's CVEs have a known public exploit.
- Which versions of totolink x6000r firmware are affected?
- 4 distinct totolink x6000r firmware versions are named across its CVEs. Use the version filter above to see the CVEs affecting a specific version.
- What are the most common weakness types in totolink x6000r firmware CVEs?
- totolink x6000r firmware's CVEs most often map to these CWE weakness types: CWE-77 (Improper Neutralization of Special Elements used in a Command ('Command Injection')), CWE-78 (Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')), CWE-20 (Improper Input Validation), CWE-798 (Use of Hard-coded Credentials).
- How many critical totolink x6000r firmware vulnerabilities are there?
- totolink x6000r firmware has 47 critical and 5 high-severity CVEs.
- What is the average severity of totolink x6000r firmware CVEs?
- The average CVSS base score across totolink x6000r firmware's scored CVEs is 9.3.
References
- All totolink vulnerabilities
- The MITRE CVE Program (opens in a new tab)
- Learn: What is a CVE?
- CWE directory: the weakness types these CVEs map to
Vulnerability data is sourced from the CVE Program; severity, KEV, and exploit signals are aggregated by RadicalNotion.AI.
Track totolink x6000r firmware vulnerabilities
Monitor new totolink x6000r firmware vulnerabilities as they are disclosed, with AI-written analysis and remediation guidance.