CVE-2024-32353: Command Injection
TOTOLINK X5000R V9.1.0cu.2350B20230313 was discovered to contain a command injection vulnerability via the 'port' parameter in the setSSServer function at /cgi-bin/cstecgi.cgi.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-32353?
CVE-2024-32353 is classified as a command injection vulnerability, which can potentially allow unauthorized access to the system.
How do I fix CVE-2024-32353?
To fix CVE-2024-32353, update the TOTOLINK X5000R firmware to the latest version provided by the manufacturer.
What systems are affected by CVE-2024-32353?
CVE-2024-32353 affects the TOTOLINK X5000R router running firmware version V9.1.0cu.2350_B20230313.
What type of vulnerability is CVE-2024-32353?
CVE-2024-32353 is a command injection vulnerability that can be exploited through the 'port' parameter in the setSSServer function.
Can CVE-2024-32353 lead to remote code execution?
Yes, the command injection vulnerability in CVE-2024-32353 could potentially be exploited to achieve remote code execution.