Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-27004

Totolink routers s X5000R V9.1.0u.6118_B20201102 and A7000R V9.1.0u.6115_B20201022 were discovered to contain a command injection vulnerability in the Tunnel 6in4 function via the remote6in4 parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.313
EPSS Ranking 96.6%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2022-27004


Contact Us

Shodan ® - All rights reserved