CVE-2024-22529: Totolink x2000r Firmware
Critical severity, CVSS 9.8. EPSS: 1.7% chance of exploitation in the next 30 days.
TOTOLINK X2000R_V2 V2.0.0-B20230727.10434 has a command injection vulnerability in the sub_449040 (handle function of formUploadFile) of /bin/boa.
Affected products
- Totolink x2000r Firmware: version 2.0.0-b20230727.10434 only
Published 2024-01-25. Last modified 2026-06-17.