Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wcmw-p6qg-rm5r

Опубликовано: 05 фев. 2022
Источник: github
Github: Не прошло ревью

Описание

TOTOLINK A720R v4.1.5cu.470_B20200911 was discovered to contain a command injection vulnerability in the "Main" function. This vulnerability allows attackers to execute arbitrary commands via the QUERY_STRING parameter.

TOTOLINK A720R v4.1.5cu.470_B20200911 was discovered to contain a command injection vulnerability in the "Main" function. This vulnerability allows attackers to execute arbitrary commands via the QUERY_STRING parameter.

EPSS

Процентиль: 95%
0.20315
Средний

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 9.8
nvd
около 4 лет назад

TOTOLINK A720R v4.1.5cu.470_B20200911 was discovered to contain a command injection vulnerability in the "Main" function. This vulnerability allows attackers to execute arbitrary commands via the QUERY_STRING parameter.

EPSS

Процентиль: 95%
0.20315
Средний

Дефекты

CWE-77