Description
Totolink devices A3100R v4.1.2cu.5050_B20200504, A830R v5.9c.4729_B20191112, and A720R v4.1.5cu.470_B20200911 were discovered to contain command injection vulnerability in the function setNoticeCfg. This vulnerability allows attackers to execute arbitrary commands via the IpFrom parameter.
Published: 2022-02-04
Score: 9.8 Critical
EPSS: 26.5% Moderate
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

No history.

Subscriptions

Totolink A3100r A3100r Firmware A720r A720r Firmware A830r A830r Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T04:17:24.828Z

Reserved: 2021-11-29T00:00:00.000Z

Link: CVE-2021-44247

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-02-04T02:15:07.873

Modified: 2024-11-21T06:30:40.110

Link: CVE-2021-44247

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses