First published: Fri Jul 07 2023(Updated: )
TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the admuser parameter in the setPasswordCfg function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink A3300r Firmware | =17.0.0cu.557_b20221024 | |
TOTOLINK A3300R |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for TOTOLINK A3300R is CVE-2023-37171.
The severity of CVE-2023-37171 is critical with a score of 9.8.
The impacted software for CVE-2023-37171 is TOTOLINK A3300R V17.0.0cu.557_B20221024 firmware.
The command injection vulnerability in CVE-2023-37171 can be exploited via the admuser parameter in the setPasswordCfg function.
There is currently no information available on a fix for CVE-2023-37171. It is recommended to follow the vendor's advisories for updates.