Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g7w2-v9m9-34xp

Опубликовано: 07 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.5
CVSS3: 7.3

Описание

A vulnerability has been found in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function setFirewallType of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument firewallType leads to os command injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.

A vulnerability has been found in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function setFirewallType of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument firewallType leads to os command injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 64%
0.01167
Низкий

5.5 Medium

CVSS4

7.3 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 7.3
nvd
4 месяца назад

A vulnerability has been found in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function setFirewallType of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument firewallType leads to os command injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 7.3
fstec
5 месяцев назад

Уязвимость функции setFirewallType (/cgi-bin/cstecgi.cgi) микропрограммного обеспечения роутеров Totolink A7100RU, позволяющая нарушителю обойти существующие ограничения безопасности и выполнить произвольные команды

EPSS

Процентиль: 64%
0.01167
Низкий

5.5 Medium

CVSS4

7.3 High

CVSS3

Дефекты

CWE-77