TOTOLINK outdoor CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the NTPSyncWithHost function via the hostTime parameter.
2024-05-14T15:38:35.720
2025-04-04T14:47:14.257
Analyzed
CVSSv3.1: 3.8 (LOW)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | totolink | cp450_firmware | 4.1.0cu.747_b20191224 | Yes |
Hardware | totolink | cp450 | - | No |