- Products & ServicesProducts & Services
- SolutionsSolutions
- PricingPricing
- CompanyCompany
- ResourcesResources
en
en
As of 10/05/2026, within CyStack's analyzed data, A3002MU has 13 security vulnerabilities published in the last 90 days. Of these, 11 are rated High or Critical. None of these vulnerabilities is listed in the CISA KEV catalog. CyStack recommends that organizations and individual users remediate applicable vulnerabilities as soon as possible.
CyStack does not yet have sufficient official-source data to identify the latest version of A3002MU and determine which vulnerabilities affect that version.
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScanSeverity across 14 analyzed records
| Vulnerability | Exploitation status | Fix | Published | Severity |
|---|---|---|---|---|
CVE-2026-105286Totolink A3002MU File Upload formUploadFile sub_44B250 path traversal | Exploitation statusPublic exploit | FixNot confirmed | Published10/05/2026 | SeverityMedium |
CVE-2026-105285Totolink A3002MU QoS Rule formIpQoS stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/05/2026 | SeverityCritical |
CVE-2026-105284Totolink A3002MU Authentication Check boa sub_40FCFC improper authorization | Exploitation statusPublic exploit | FixNot confirmed | Published10/05/2026 | SeverityCritical |
CVE-2026-93742Totolink A3002MU formWsc command injection | Exploitation statusPublic exploit | FixNot confirmed | Published09/19/2026 | SeverityCritical |
CVE-2026-93741Totolink A3002MU formWlWds buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published09/19/2026 | SeverityCritical |
CVE-2026-93740Totolink A3002MU formWlEncrypt buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published09/18/2026 | SeverityCritical |
CVE-2026-93739Totolink A3002MU formWlAc buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published09/18/2026 | SeverityCritical |
CVE-2026-93738Totolink A3002MU formSchedule buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published09/18/2026 | SeverityCritical |
CVE-2026-90608Totolink A3002MU boa formPortFw buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published09/14/2026 | SeverityCritical |
CVE-2026-90607Totolink A3002MU boa formNewSchedule buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published09/14/2026 | SeverityCritical |
CVE-2026-90606Totolink A3002MU boa formIpv6Setup buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published09/13/2026 | SeverityCritical |
CVE-2026-90605Totolink A3002MU boa formFilter buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published09/13/2026 | SeverityCritical |
CVE-2026-90604Totolink A3002MU Anchor Tag cross site scripting | Exploitation statusPublic exploit | FixNot confirmed | Published09/13/2026 | SeverityMedium |
CVE-2026-6194Totolink A3002MU HTTP Request formWlanSetup sub_410188 stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published04/13/2026 | SeverityHigh |