Description
A command injection issue in TOTOLINK A6000R V1.0.1-B20201211.2000 firmware allows a remote attacker to execute arbitrary code via the iface parameter in the vif_enable function.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Thu, 03 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Totolink a6000r
|
|
| CPEs | cpe:2.3:h:totolink:a6000r:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Totolink a6000r
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T03:57:39.743Z
Reserved: 2024-06-10T00:00:00.000Z
Link: CVE-2024-37626
Updated: 2024-08-02T03:57:39.743Z
Status : Analyzed
Published: 2024-06-20T17:15:52.353
Modified: 2025-04-03T15:46:51.460
Link: CVE-2024-37626
No data.
OpenCVE Enrichment
No data.
Weaknesses