Skip to content
COOEY

EXPOSURES › CVE-2021-46007

CVE-2021-46007

CRITICAL
DETAIL
SourceNVD · cve Published2022-03-30 CVSS9.8 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2021-46007 ↗
⚡ RCE SHAME 50/100 rce

totolink a3100r V5.9c.4577 is vulnerable to os command injection. The backend of a page is executing the "ping" command, and the input field does not adequately filter special symbols. This can lead to command injection attacks.

▸ RECOMMENDED ACTION  Remote code execution — patch the affected products on priority.

DESCRIPTION

totolink a3100r V5.9c.4577 is vulnerable to os command injection. The backend of a page is executing the "ping" command, and the input field does not adequately filter special symbols. This can lead to command injection attacks.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.