Description
A vulnerability was found in Totolink X6000R AX3000 9.4.0cu.852_20230719. It has been rated as critical. This issue affects the function setWizardCfg of the file /cgi-bin/cstecgi.cgi of the component shttpd. The manipulation leads to command injection. The exploit has been disclosed to the public and may be used. The identifier VDB-254573 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-17506 | A vulnerability was found in Totolink X6000R AX3000 9.4.0cu.852_20230719. It has been rated as critical. This issue affects the function setWizardCfg of the file /cgi-bin/cstecgi.cgi of the component shttpd. The manipulation leads to command injection. The exploit has been disclosed to the public and may be used. The identifier VDB-254573 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. |
References
History
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 22 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Totolink ax3000
|
|
| CPEs | cpe:2.3:a:totolink:ax3000:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Totolink ax3000
|
|
| Metrics |
ssvc
|
Tue, 01 Apr 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Totolink
Totolink x6000r Totolink x6000r Firmware |
|
| CPEs | cpe:2.3:h:totolink:x6000r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:x6000r_firmware:9.4.0cu.852_b20230719:*:*:*:*:*:*:* |
|
| Vendors & Products |
Totolink
Totolink x6000r Totolink x6000r Firmware |
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-04-22T16:16:21.670Z
Reserved: 2024-02-22T18:55:06.036Z
Link: CVE-2024-1781
Updated: 2024-08-01T18:48:22.142Z
Status : Analyzed
Published: 2024-02-23T01:15:52.913
Modified: 2025-04-01T15:35:54.800
Link: CVE-2024-1781
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD