The TOTOLINK A810R V4.1.2cu.5182_B20201026 were found to contain a pre-auth remote command execution vulnerability in the setNoticeCfg function through the NoticeUrl parameter.
CVE ID: CVE-2025-28137
Vendor: n/a
Product: n/a
EPSS Score: 0.32% (probability of being exploited)
EPSS Percentile: 53.88% (scored less or equal to compared to others)
EPSS Date: 2025-04-21 (when was this score calculated)