First published: Thu Sep 15 2022(Updated: )
TOTOLINK-720R v4.1.5cu.374 was discovered to contain a remote code execution (RCE) vulnerability via the setdiagnosicfg function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink A720r Firmware | =4.1.5cu.374 | |
TOTOLINK A720R |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38534 is a remote code execution (RCE) vulnerability found in TOTOLINK-720R v4.1.5cu.374.
CVE-2022-38534 has a severity score of 7.2, which is considered high.
TOTOLINK-720R v4.1.5cu.374 is affected by CVE-2022-38534.
Currently, there is no known fix or patch for CVE-2022-38534. It is recommended to follow any security advisories provided by the vendor.
The CWE for CVE-2022-38534 is CWE-78, which is for Improper Neutralization of Special Elements used in an OS Command (OS Command Injection).