Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-56rf-g9gc-682p

Опубликовано: 24 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.6
CVSS3: 7.2

Описание

A flaw has been found in TOTOLINK X6000R 9.4.0cu.1360_B20241207/9.4.0cu.1498_B20250826. Affected by this issue is the function setLanCfg of the file /usr/sbin/shttpd. Executing a manipulation of the argument Hostname can lead to os command injection. The attack may be launched remotely.

A flaw has been found in TOTOLINK X6000R 9.4.0cu.1360_B20241207/9.4.0cu.1498_B20250826. Affected by this issue is the function setLanCfg of the file /usr/sbin/shttpd. Executing a manipulation of the argument Hostname can lead to os command injection. The attack may be launched remotely.

EPSS

Процентиль: 80%
0.01287
Низкий

8.6 High

CVSS4

7.2 High

CVSS3

Дефекты

CWE-77
CWE-78

Связанные уязвимости

CVSS3: 7.2
nvd
17 дней назад

A flaw has been found in TOTOLINK X6000R 9.4.0cu.1360_B20241207/9.4.0cu.1498_B20250826. Affected by this issue is the function setLanCfg of the file /usr/sbin/shttpd. Executing a manipulation of the argument Hostname can lead to os command injection. The attack may be launched remotely.

EPSS

Процентиль: 80%
0.01287
Низкий

8.6 High

CVSS4

7.2 High

CVSS3

Дефекты

CWE-77
CWE-78