A vulnerability has been found in TOTOLINK A3600R 4.1.2cu.5182_B20201102 and classified as critical. This vulnerability affects the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument ipDoamin leads to os command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-272596. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-07-29T00:31:04.158Z

Updated: 2024-08-01T21:52:30.999Z

Reserved: 2024-07-28T05:34:53.160Z

Link: CVE-2024-7175

cve-icon Vulnrichment

Updated: 2024-08-01T21:52:30.999Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-29T01:15:09.830

Modified: 2024-08-06T12:57:14.623

Link: CVE-2024-7175

cve-icon Redhat

No data.