TOTOLINK LR350 V9.3.5u.6369_B20220309 was discovered to contain a command injection vulnerability via the FileName parameter in the UploadFirmwareFile function.
2023-07-07T14:15:09.500
2024-11-21T08:11:05.960
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | totolink | lr350_firmware | 9.3.5u.6369_b20220309 | Yes |
Hardware | totolink | lr350 | - | No |