An issue in TOTOLINK A3700R v.9.1.2u.6165_20211012 allows a remote attacker to execute arbitrary code via the FileName parameter of the UploadFirmwareFile function.
2023-10-25T18:17:39.780
2024-11-21T08:28:47.300
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | totolink | a3700r_firmware | 9.1.2u.6165_20211012 | Yes |
Hardware | totolink | a3700r | - | No |