CVE-2022-38511: OS Command Injection
Published Aug 28, 2022
·Updated
TOTOLINK A810R V5.9c.4050B20190424 was discovered to contain a command injection vulnerability via the component downloadFile.cgi.
Affected Software
2 affected components
TOTOLINK A810r Firmware=5.9c.4050_b20190424
TOTOLINK A810R
Event History
Aug 28, 2022
CVE Published
via MITRE·11:58 PM
Data Sourced
via MITRE·11:58 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for TOTOLINK A810R?
The vulnerability ID for TOTOLINK A810R is CVE-2022-38511.
2
What is the severity of CVE-2022-38511?
The severity of CVE-2022-38511 is high with a CVSS score of 7.8.
3
How does the TOTOLINK A810R vulnerability occur?
The TOTOLINK A810R vulnerability occurs due to a command injection vulnerability in the component downloadFile.cgi.
4
Which software versions of TOTOLINK A810R are affected by the vulnerability?
The TOTOLINK A810R firmware version 5.9c.4050_B20190424 is affected by the vulnerability.
5
How can I fix the TOTOLINK A810R vulnerability?
To fix the TOTOLINK A810R vulnerability, it is recommended to update the firmware to a version that addresses the command injection vulnerability.