TOTOLINK CA300-PoE V6.2c.884 was discovered to contain a command injection vulnerability via the plugin_version parameter in the setUnloadUserData function.
2023-02-03T16:15:12.747
2025-03-26T19:15:24.960
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | totolink | ca300-poe_firmware | 6.2c.884 | Yes |
Hardware | totolink | ca300-poe | - | No |