Vulnerabilities
Vulnerable Software
TOTOLINK CP300+ <=V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the File parameter in the function UploadCustomModule.
CVSS Score
9.8
EPSS Score
0.002
Published
2023-10-16
TOTOLINK CP300+ V5.2cu.7594_B20200910 and before is vulnerable to command injection.
CVSS Score
9.8
EPSS Score
0.03
Published
2023-10-16
TOTOLINK CP300+ V5.2cu.7594_B20200910 and before is vulnerable to command injection.
CVSS Score
9.8
EPSS Score
0.03
Published
2023-10-16
TOTOLINK CP300+ V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the pingIp parameter in the function setDiagnosisCfg.
CVSS Score
9.8
EPSS Score
0.002
Published
2023-10-16
A command injection vulnerability in the hostTime parameter in the function NTPSyncWithHostof TOTOLINK CP300+ V5.2cu.7594_B20200910 allows attackers to execute arbitrary commands via a crafted http packet.
CVSS Score
9.8
EPSS Score
0.018
Published
2023-05-16


Contact Us

Shodan ® - All rights reserved