CVE-2024-24332: Command Injection
TOTOLINK A3300R V17.0.0cu.557B20221024 was discovered to contain a command injection vulnerability via the url parameter in the setUrlFilterRules function.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-24332?
CVE-2024-24332 is classified as a high severity command injection vulnerability.
How do I fix CVE-2024-24332?
To fix CVE-2024-24332, update the TOTOLINK A3300R firmware to the latest version provided by the manufacturer.
What impact does CVE-2024-24332 have on my device?
CVE-2024-24332 allows attackers to execute arbitrary commands on the TOTOLINK A3300R router, potentially compromising the device security.
Is CVE-2024-24332 a common vulnerability?
CVE-2024-24332 is specific to the TOTOLINK A3300R firmware version 17.0.0cu.557_B20221024 and may not be prevalent across other devices.
How can I verify if my device is affected by CVE-2024-24332?
You can verify if your device is affected by checking if it is running the TOTOLINK A3300R firmware version 17.0.0cu.557_B20221024.