Critical severity9.8NVD Advisory· Published Nov 24, 2020· Updated Jun 17, 2026
CVE-2015-9551
CVE-2015-9551
Description
An issue was discovered on TOTOLINK A850R-V1 through 1.0.1-B20150707.1612 and F1-V2 through 1.1-B20150708.1646 devices. There is Remote Code Execution in the management interface via the formSysCmd sysCmd parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
12- cpe:2.3:o:totolink:a850r-v1_firmware:*:*:*:*:*:*:*:*Range: <1.0.1-b20150707.1612
- cpe:2.3:o:totolink:f1-v2_firmware:*:*:*:*:*:*:*:*Range: <2.1.1-b20150708.1646
- cpe:2.3:o:totolink:f2-v1_firmware:*:*:*:*:*:*:*:*Range: <2.1.0-b20150320.1611
- cpe:2.3:o:totolink:n150rt-v2_firmware:*:*:*:*:*:*:*:*Range: <2.1.1-b20150708.1548
- cpe:2.3:o:totolink:n151rt-v2_firmware:*:*:*:*:*:*:*:*Range: <1.1-b20150708.1559
- cpe:2.3:o:totolink:n300rh-v2_firmware:*:*:*:*:*:*:*:*Range: <2.0.1-b20150708.1625
- cpe:2.3:o:totolink:n300rh-v3_firmware:*:*:*:*:*:*:*:*Range: <3.0.0-b20150331.0858
- cpe:2.3:o:totolink:n300rt-v2_firmware:*:*:*:*:*:*:*:*Range: <2.1.1-b20150708.1613
- TOTOLINK/A850R-V1description
Patches
Vulnerability mechanics
References
1- pierrekim.github.io/blog/2015-07-16-backdoor-and-RCE-found-in-8-TOTOLINK-products.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.