First published: Tue May 14 2024(Updated: )
TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection vulnerability via the 'port' parameter in the setSSServer function at /cgi-bin/cstecgi.cgi.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
TOTOLINK X5000R firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-32353 is classified as a command injection vulnerability, which can potentially allow unauthorized access to the system.
To fix CVE-2024-32353, update the TOTOLINK X5000R firmware to the latest version provided by the manufacturer.
CVE-2024-32353 affects the TOTOLINK X5000R router running firmware version V9.1.0cu.2350_B20230313.
CVE-2024-32353 is a command injection vulnerability that can be exploited through the 'port' parameter in the setSSServer function.
Yes, the command injection vulnerability in CVE-2024-32353 could potentially be exploited to achieve remote code execution.