A command injection issue in TOTOLINK A6000R V1.0.1-B20201211.2000 firmware allows a remote attacker to execute arbitrary code via the iface parameter in the vif_enable function.
2024-06-20T17:15:52.353
2025-04-03T15:46:51.460
Analyzed
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | totolink | a6000r_firmware | 1.0.1-b20201211.2000 | Yes |
Hardware | totolink | a6000r | - | No |