First published: Thu Oct 06 2022(Updated: )
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain a command injection vulnerability via the OpModeCfg function at /cgi-bin/cstecgi.cgi.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink Nr1800x Firmware | =9.1.0u.6279_b20210910 | |
TOTOLINK NR1800X |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-41525 is a command injection vulnerability found in TOTOLINK NR1800X V9.1.0u.6279_B20210910 firmware.
CVE-2022-41525 has a severity rating of 9.8 (critical).
CVE-2022-41525 affects TOTOLINK NR1800X V9.1.0u.6279_B20210910 firmware by allowing command injection via the OpModeCfg function at /cgi-bin/cstecgi.cgi.
TOTOLINK NR1800X V9.1.0u.6279_B20210910 firmware is vulnerable to CVE-2022-41525.
To fix the CVE-2022-41525 vulnerability in TOTOLINK NR1800X, update the firmware to a version that is not affected by the vulnerability.