Page 2 of 36 results (0.004 seconds)

CVSS: 10.0EPSS: 31%CPEs: 2EXPL: 1

23 Mar 2023 — TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the enabled parameter at /setting/setWanIeCfg. • https://github.com/Am1ngl/ttt/tree/main/29 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •

CVSS: 10.0EPSS: 2%CPEs: 2EXPL: 1

08 Mar 2023 — TOTOlink A7100RU V7.4cu.2313_B20191024 router was discovered to contain a command injection vulnerability via the ou parameter at /setting/delStaticDhcpRules. • https://github.com/Am1ngl/ttt/tree/main/22 • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •

CVSS: 10.0EPSS: 1%CPEs: 2EXPL: 0

21 Feb 2023 — TOTOLink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability. • https://github.com/fuxianghah/IOT/tree/main/Motorala/MR2600/13 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •

CVSS: 10.0EPSS: 31%CPEs: 2EXPL: 1

16 Feb 2023 — TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the province parameter at setting/delStaticDhcpRules. • https://github.com/Am1ngl/ttt/tree/main/19 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •

CVSS: 10.0EPSS: 31%CPEs: 2EXPL: 1

16 Feb 2023 — TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the city parameter at setting/delStaticDhcpRules. • https://github.com/Am1ngl/ttt/tree/main/20 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •

CVSS: 10.0EPSS: 31%CPEs: 2EXPL: 1

06 Feb 2023 — TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the country parameter at setting/delStaticDhcpRules. • https://github.com/Am1ngl/ttt/tree/main/18 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •

CVSS: 10.0EPSS: 2%CPEs: 2EXPL: 1

20 Jan 2023 — TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the rsabits parameter in the setting/delStaticDhcpRules function. • https://github.com/Am1ngl/ttt/tree/main/16 • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •

CVSS: 10.0EPSS: 2%CPEs: 2EXPL: 1

20 Jan 2023 — TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the dayvalid parameter in the setting/delStaticDhcpRules function. • https://github.com/Am1ngl/ttt/tree/main/17 • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •

CVSS: 10.0EPSS: 2%CPEs: 2EXPL: 1

20 Jan 2023 — TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the servername parameter in the setting/delStaticDhcpRules function. • https://github.com/Am1ngl/ttt/tree/main/15 • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •

CVSS: 10.0EPSS: 2%CPEs: 2EXPL: 1

20 Jan 2023 — TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the FileName parameter in the setting/setOpenVpnCertGenerationCfg function. • https://github.com/Am1ngl/ttt/tree/main/14 • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •