VYPR
Critical severity9.8NVD Advisory· Published Feb 24, 2022· Updated Jun 17, 2026

CVE-2022-25084

CVE-2022-25084

Description

TOTOLink T6 V5.9c.4085_B20190428 was discovered to contain a command injection vulnerability in the "Main" function. This vulnerability allows attackers to execute arbitrary commands via the QUERY_STRING parameter.

Affected products

2
  • TOTOLink/T6description
  • Totolink/T6llm-fuzzy
    Range: V5.9c.4085_B20190428

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.