First published: Thu Aug 25 2022(Updated: )
TOTOLink A3600R V4.1.2cu.5182_B20201102 was discovered to contain a command injection vulnerability via the username parameter in /cstecgi.cgi.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink A3600r Firmware | =4.1.2cu.5182_b20201102 | |
TOTOLink A3600R |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36455 is a command injection vulnerability found in the TOTOLink A3600R V4.1.2cu.5182_B20201102 firmware.
CVE-2022-36455 has a severity score of 7.8, indicating a high level of severity.
The affected software is Totolink A3600r Firmware version 4.1.2cu.5182_b20201102.
To fix CVE-2022-36455, it is recommended to update the TOTOLink A3600R firmware to a patched version provided by the manufacturer.
Yes, TOTOLink A3600R V4.1.2cu.5182_B20201102 is vulnerable to CVE-2022-36455.