Medium severity6.8NVD Advisory· Published Jan 15, 2025· Updated Jun 17, 2026
CVE-2024-57025
CVE-2024-57025
Description
TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "desc" parameter in setWiFiScheduleCfg.
Affected products
3- cpe:2.3:o:totolink:x5000r_firmware:9.1.0cu.2350_b20230313:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- github.com/tiger5671/Vulnerabilities/blob/main/TOTOLINK%20X5000R/setWiFiScheduleCfg/setWiFiScheduleCfg.mdnvdExploitThird Party Advisory
- www.totolink.netnvdProduct
News mentions
0No linked articles in our index yet.