Unrated severityNVD Advisory· Published Aug 12, 2024· Updated Aug 13, 2024
CVE-2024-42745
CVE-2024-42745
Description
In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setUPnPCfg. Authenticated Attackers can send malicious packet to execute arbitrary commands.
Affected products
2Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.