VYPR
Critical severity9.8NVD Advisory· Published Feb 24, 2022· Updated Jun 17, 2026

CVE-2022-25084

CVE-2022-25084

Description

TOTOLink T6 V5.9c.4085_B20190428 was discovered to contain a command injection vulnerability in the "Main" function. This vulnerability allows attackers to execute arbitrary commands via the QUERY_STRING parameter.

Affected products

3
  • Totolink/T6llm-fuzzy
    Range: V5.9c.4085_B20190428
  • cpe:2.3:o:totolink:t6_firmware:5.9c.4085_b20190428:*:*:*:*:*:*:*
  • TOTOLink/T6description

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.