Логотип exploitDog
bind:CVE-2024-52723
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-52723

Количество 2

Количество 2

nvd логотип

CVE-2024-52723

около 1 года назад

In TOTOLINK X6000R V9.4.0cu.1041_B20240224 in the shttpd file, the Uci_Set Str function is used without strict parameter filtering. An attacker can achieve arbitrary command execution by constructing the payload.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-mqx6-fm3x-25wm

около 1 года назад

In TOTOLINK X6000R V9.4.0cu.1041_B20240224 in the shttpd file, the Uci_Set Str function is used without strict parameter filtering. An attacker can achieve arbitrary command execution by constructing the payload.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-52723

In TOTOLINK X6000R V9.4.0cu.1041_B20240224 in the shttpd file, the Uci_Set Str function is used without strict parameter filtering. An attacker can achieve arbitrary command execution by constructing the payload.

CVSS3: 9.8
0%
Низкий
около 1 года назад
github логотип
GHSA-mqx6-fm3x-25wm

In TOTOLINK X6000R V9.4.0cu.1041_B20240224 in the shttpd file, the Uci_Set Str function is used without strict parameter filtering. An attacker can achieve arbitrary command execution by constructing the payload.

CVSS3: 9.8
0%
Низкий
около 1 года назад

Уязвимостей на страницу