Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 05 Oct 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 05 Oct 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in Totolink A3002MU 1.0.0-B20230403.1455. The impacted element is the function sub_40FCFC of the file /bin/boa of the component Authentication Check. Executing a manipulation can lead to improper authorization. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks. | |
| Title | Totolink A3002MU Authentication Check boa sub_40FCFC improper authorization | |
| First Time appeared |
Totolink
Totolink a3002mu |
|
| Weaknesses | CWE-266 CWE-285 |
|
| CPEs | cpe:2.3:a:totolink:a3002mu:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Totolink
Totolink a3002mu |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-10-05T15:29:02.936Z
Reserved: 2026-10-04T22:17:45.310Z
Link: CVE-2026-105284
Updated: 2026-10-05T15:19:30.699Z
Status : Received
Published: 2026-10-05T09:17:12.350
Modified: 2026-10-05T16:17:12.020
Link: CVE-2026-105284
No data.
OpenCVE Enrichment
Updated: 2026-10-05T11:15:07Z
