CVE-2022-48066: Totolink a830r Firmware

Critical severity, CVSS 9.8. EPSS: 2.4% chance of exploitation in the next 30 days.

An issue in the component global.so of Totolink A830R V4.1.2cu.5182 allows attackers to bypass authentication via a crafted cookie.

Affected products

  • Totolink a830r Firmware: version 4.1.2cu.5182 only

Published 2023-01-27. Last modified 2026-06-17.