Metrics
Affected Vendors & Products
Fri, 20 Sep 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Totolink
Totolink a720r Totolink a720r Firmware |
|
CPEs | cpe:2.3:h:totolink:a720r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:a720r_firmware:4.1.5:*:*:*:*:*:*:* |
|
Vendors & Products |
Totolink
Totolink a720r Totolink a720r Firmware |
Tue, 17 Sep 2024 02:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 15 Sep 2024 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as critical has been found in TOTOLINK A720R 4.1.5. Affected is the function exportOvpn. The manipulation leads to os command injection. It is possible to launch the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | TOTOLINK A720R exportOvpn os command injection | |
Weaknesses | CWE-78 | |
References |
| |
Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2024-09-15T10:31:05.443Z
Updated: 2024-09-16T20:05:10.010Z
Reserved: 2024-09-14T19:33:24.186Z
Link: CVE-2024-8869
Updated: 2024-09-16T20:05:06.202Z
Status : Analyzed
Published: 2024-09-15T11:15:13.323
Modified: 2024-09-20T16:59:22.560
Link: CVE-2024-8869
No data.