A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. It has been declared as critical. Affected by this vulnerability is the function setMacQos of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument priority/macAddress leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-272599. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
History

Fri, 23 Aug 2024 03:15:00 +0000

Type Values Removed Values Added
First Time appeared Totolink
Totolink a3600r
Totolink a3600r Firmware
CPEs cpe:2.3:h:totolink:a3600r:-:*:*:*:*:*:*:*
cpe:2.3:o:totolink:a3600r_firmware:4.1.2cu.5182_b20201102:*:*:*:*:*:*:*
Vendors & Products Totolink
Totolink a3600r
Totolink a3600r Firmware

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-07-29T02:00:08.334Z

Updated: 2024-08-01T21:52:30.721Z

Reserved: 2024-07-28T05:35:05.576Z

Link: CVE-2024-7178

cve-icon Vulnrichment

Updated: 2024-08-01T21:52:30.721Z

cve-icon NVD

Status : Modified

Published: 2024-07-29T03:15:02.417

Modified: 2024-11-21T09:51:01.297

Link: CVE-2024-7178

cve-icon Redhat

No data.