CVE-2021-42885: OS Command Injection
Published Jun 3, 2022
·Updated
TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in function setDeviceMac of the file global.so which can control deviceName to attack.
Affected Software
2 affected components
TOTOLINK EX1200T firmware=4.1.2cu.5215
TOTOLINK EX1200T
Event History
Jun 3, 2022
CVE Published
via MITRE·10:50 AM
Data Sourced
via MITRE·10:50 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this TOTOLINK EX1200T vulnerability?
The vulnerability ID is CVE-2021-42885.
2
What is the severity of CVE-2021-42885?
The severity of CVE-2021-42885 is critical with a score of 9.8.
3
What is the affected software version of CVE-2021-42885?
The affected software version is TOTOLINK EX1200T V4.1.2cu.5215.
4
What is the CWE number associated with CVE-2021-42885?
The CWE numbers associated with CVE-2021-42885 are CWE-77 and CWE-78.
5
Is TOTOLINK EX1200T V4.1.2cu.5215 vulnerable to CVE-2021-42885?
Yes, TOTOLINK EX1200T V4.1.2cu.5215 is vulnerable to CVE-2021-42885.