A command execution vulnerability exists in the TOTOLINK...
Moderate severity
Unreviewed
Published
May 8, 2025
to the GitHub Advisory Database
•
Updated May 12, 2025
Description
Published by the National Vulnerability Database
May 8, 2025
Published to the GitHub Advisory Database
May 8, 2025
Last updated
May 12, 2025
A command execution vulnerability exists in the TOTOLINK A950RG V4.1.2cu.5204_B20210112. The vulnerability is located in the setNoticeCfg interface within the /lib/cste_modules/system.so library, specifically in the processing of the IpTo parameter.
References