First published: Fri Feb 04 2022(Updated: )
TOTOLINK A720R v4.1.5cu.470_B20200911 was discovered to contain a command injection vulnerability in the "Main" function. This vulnerability allows attackers to execute arbitrary commands via the QUERY_STRING parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink A720r Firmware | =4.1.5cu.470_b20200911 | |
TOTOLINK A720R |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-45742 is critical.
The affected software for CVE-2021-45742 is Totolink A720r Firmware version 4.1.5cu.470_b20200911.
CVE-2021-45742 allows attackers to execute arbitrary commands via the QUERY_STRING parameter, posing a significant security risk.
Yes, TOTOLINK A720R version 4.1.5cu.470_B20200911 is vulnerable to CVE-2021-45742.
To fix CVE-2021-45742, it is recommended to update to a patched version of Totolink A720r firmware.