Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-41518


TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain a command injection vulnerability via the UploadFirmwareFile function at /cgi-bin/cstecgi.cgi.


Published

2022-10-06T18:16:59.107

Last Modified

2024-11-21T07:23:19.027

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-78

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System totolink nr1800x_firmware 9.1.0u.6279_b20210910 Yes
Hardware totolink nr1800x - No

References