← Vulnerability feed

Vulnerability record · CVE-2024-7335 · published 1 August 2024

CVE-2024-7335: Totolink ex200 firmware classic buffer overflow vulnerability

TTotolink · Ex200 Firmware

A vulnerability classified as critical has been found in TOTOLINK EX200 4.0.3c.7646_B20201211. Affected is the function getSaveConfig of the file /cgi-bin/cstecgi.cgi?action=save&setting. The manipulation of the argument http_host leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-273258 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

8.7 CVSS 4.0 High EPSS 1.2% · top 34.3% CWE-120 · Classic buffer overflow
8.7CVSS 4.0 base score, v2 9.0
1.2%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References, 1 tagged exploit
17 Jun 2026Last modified by NVD

Description

A vulnerability classified as critical has been found in TOTOLINK EX200 4.0.3c.7646_B20201211. Affected is the function getSaveConfig of the file /cgi-bin/cstecgi.cgi?action=save&setting. The manipulation of the argument http_host leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-273258 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
https://github.com/abcdefg-png/IoT-vulnerable/blob/main/TOTOLINK/EX200/getSaveConfig.md ExploitTechnical DescriptionThird Party Advisory
https://vuldb.com/?ctiid.273258 Permissions RequiredVDB Entry
https://vuldb.com/?id.273258 Permissions RequiredVDB Entry
https://vuldb.com/?submit.379313 VDB Entry

Track CVE-2024-7335 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2024-31810Totolink ex200 firmware hard-coded credentials vulnerabilityTOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a hardcoded password for root at /etc/shadow.sample.EPSS 0.62%9.8CVE-2024-31807Totolink ex200 firmware code injection vulnerabilityTOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the hostTime parameter in the NTPSync…EPSS 1.4%9.8CVE-2021-43711Totolink ex200 firmware command injection vulnerabilityThe downloadFlile.cgi binary file in TOTOLINK EX200 V4.0.3c.7646_B20201211 has a command injection vulnerability when receiving GET parameters. The p…EPSS 38%9.1CVE-2024-31815Totolink ex200 firmware insecure direct object reference vulnerabilityIn TOTOLINK EX200 V4.0.3c.7314_B20191204, an attacker can obtain the configuration file without authorization through /cgi-bin/ExportSettings.shEPSS 0.58%8.8CVE-2024-31808Totolink ex200 firmware vulnerabilityTOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the webWlanIdx parameter in the setWe…EPSS 0.93%8.8CVE-2024-31809Totolink ex200 firmware vulnerabilityTOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the FileName parameter in the setUpgr…EPSS 0.98%8.8CVE-2024-31814Totolink ex200 firmware authentication bypass via alternate path vulnerabilityTOTOLINK EX200 V4.0.3c.7646_B20201211 allows attackers to bypass login through the Form_Login function.EPSS 8.3%8.7CVE-2024-7336Totolink ex200 firmware classic buffer overflow vulnerabilityA vulnerability classified as critical was found in TOTOLINK EX200 4.0.3c.7646_B20201211. Affected by this vulnerability is the function loginauth of…EPSS 1.3%

Source: NIST National Vulnerability Database (record CVE-2024-7335), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.