CVE-2022-38828: OS Command Injection
Published Sep 16, 2022
·Updated
TOTOLINK T6 V4.1.5cu.709B20210518 is vulnerable to command injection via cstecgi.cgi
Affected Software
2 affected components
TOTOLINK T6 Firmware=4.1.5cu.709_b20210518
TOTOLINK T6=3
Event History
Sep 16, 2022
CVE Published
via MITRE·02:07 PM
Data Sourced
via MITRE·02:07 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-38828?
CVE-2022-38828 has been classified as a high-severity vulnerability due to its command injection capabilities.
2
How do I fix CVE-2022-38828?
To remediate CVE-2022-38828, update the firmware of the TOTOLINK T6 router to the latest version that addresses this vulnerability.
3
What devices are affected by CVE-2022-38828?
CVE-2022-38828 specifically affects TOTOLINK T6 routers running firmware version 4.1.5cu.709_B20210518.
4
What type of vulnerability is CVE-2022-38828?
CVE-2022-38828 involves command injection that allows attackers to execute arbitrary commands on the affected device.
5
Can CVE-2022-38828 be exploited remotely?
Yes, CVE-2022-38828 can be exploited remotely, making it a significant security risk for exposed devices.