First published: Thu Aug 25 2022(Updated: )
TOTOLINK A3700R V9.1.2u.6134_B20201202 was discovered to contain a command injection vulnerability via the hostName parameter in the function setOpModeCfg.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink A3700r Firmware | =9.1.2u.6134_b20201202 | |
TOTOLINK A3700R |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for TOTOLINK A3700R is CVE-2022-36461.
The severity of CVE-2022-36461 is high with a CVSS score of 7.8.
The command injection vulnerability in TOTOLINK A3700R occurs via the hostName parameter in the setOpModeCfg function.
The TOTOLINK A3700R firmware version 9.1.2u.6134_b20201202 is affected.
No, only TOTOLINK A3700R devices with firmware version 9.1.2u.6134_b20201202 are vulnerable to CVE-2022-36461.