First published: Fri Jan 10 2025(Updated: )
TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the newpasswd parameter in the action_passwd function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink A6000R Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-57213 is classified as a high-severity vulnerability due to its potential for command injection.
To fix CVE-2024-57213, ensure that you update the TOTOLINK A6000R firmware to the latest version provided by the manufacturer.
CVE-2024-57213 can allow an attacker to execute arbitrary commands on the TOTOLINK A6000R device, compromising its security.
CVE-2024-57213 affects version V1.0.1-B20201211.2000 of the TOTOLINK A6000R.
There are currently no public exploits available for CVE-2024-57213, but the vulnerability poses a significant risk if left unpatched.