A vulnerability has been found in TOTOLINK A3600R 4.1.2cu.5182_B20201102 and classified as critical. Affected by this vulnerability is the function setUrlFilterRules of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument url leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-272605 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
History

Fri, 23 Aug 2024 15:00:00 +0000

Type Values Removed Values Added
First Time appeared Totolink
Totolink a3600r
Totolink a3600r Firmware
CPEs cpe:2.3:h:totolink:a3600r:-:*:*:*:*:*:*:*
cpe:2.3:o:totolink:a3600r_firmware:4.1.2cu.5182_b20201102:*:*:*:*:*:*:*
Vendors & Products Totolink
Totolink a3600r
Totolink a3600r Firmware

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-07-29T05:00:07.143Z

Updated: 2024-08-01T21:52:30.703Z

Reserved: 2024-07-28T05:35:29.172Z

Link: CVE-2024-7184

cve-icon Vulnrichment

Updated: 2024-08-01T21:52:30.703Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-29T05:15:02.203

Modified: 2024-08-23T14:32:00.667

Link: CVE-2024-7184

cve-icon Redhat

No data.