CVE-2023-52028: Totolink a3700r Firmware

Critical severity, CVSS 9.8. EPSS: 1.7% chance of exploitation in the next 30 days.

TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the setTracerouteCfg function.

Affected products

  • Totolink a3700r Firmware: version 9.1.2u.5822_b20200513 only

Published 2024-01-11. Last modified 2026-06-17.