TOTOLINK CA300-PoE V6.2c.884 was discovered to contain a command injection vulnerability via the FileName parameter in the setUploadUserData function.
2023-02-03T16:15:13.413
2025-03-26T15:15:46.813
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | totolink | ca300-poe_firmware | 6.2c.884 | Yes |
Hardware | totolink | ca300-poe | - | No |