CVE-2021-42875: OS Command Injection
TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in the function setDiagnosisCfg of the file lib/cstemodules/system.so to control the ipDoamin.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-42875?
The severity of CVE-2021-42875 is critical, with a severity value of 9.8.
What is the vulnerability description of CVE-2021-42875?
CVE-2021-42875 is a remote command injection vulnerability in the TOTOLINK EX1200T V4.1.2cu.5215 firmware, allowing attackers to control the ipDoamin.
Which software versions are affected by CVE-2021-42875?
TOTOLINK EX1200T firmware version 4.1.2cu.5215 is affected by CVE-2021-42875.
How can the CVE-2021-42875 vulnerability be exploited?
The CVE-2021-42875 vulnerability can be exploited by injecting remote commands through the setDiagnosisCfg function of the file lib/cste_modules/system.so.
Are any fixes available for CVE-2021-42875?
Currently, there are no available fixes for CVE-2021-42875. It is recommended to apply any patches or updates provided by the vendor when they become available.