CVE-2023-25395: OS Command Injection
TOTOlink A7100RU V7.4cu.2313B20191024 router has a command injection vulnerability.
Other sources
TOTOlink A7100RU V7.4cu.2313B20191024 router was discovered to contain a command injection vulnerability via the ou parameter at /setting/delStaticDhcpRules.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-25395?
CVE-2023-25395 refers to a command injection vulnerability in the TOTOlink A7100RU V7.4cu.2313_B20191024 router.
How severe is CVE-2023-25395?
CVE-2023-25395 has a severity score of 9.8 out of 10, making it critical.
What software versions are affected by CVE-2023-25395?
The TOTOlink A7100RU V7.4cu.2313_B20191024 router with firmware version 7.4cu.2313_b20191024 is affected by CVE-2023-25395.
How can I fix the CVE-2023-25395 vulnerability?
To fix the CVE-2023-25395 vulnerability, it is recommended to update the router's firmware to a patched version provided by Totolink.
Where can I find more information about CVE-2023-25395?
More information about CVE-2023-25395 can be found on the GitHub repository: https://github.com/Am1ngl/ttt/tree/main/22