
CVE-2025-70328 TOTOLINK X6000R v9.4.0cu.1498_B20250826 contains an OS command injection vulnerability in the NTPSyncWithHost handler of the /usr/sbin/shttpd executable. The host_tim… https://www.cve.org/CVERecord?id=CVE-2025-70328
Post summary
The post announces an OS command injection vulnerability in TOTOLINK X6000R firmware, detailing the affected component and linking to the CVE record.

