CVE-2024-34210
7.3HIGHTOTOLINK outdoor CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the CloudACMunualUpdate function via the FileName parameter.
Опубликовано: 5/14/2024Обновлено: 4/9/2025
Описание
TOTOLINK outdoor CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the CloudACMunualUpdate function via the FileName parameter.
ИИ-АнализНа базе ИИ
Затронутые продукты
totolinkcp450_firmware
4.1.0cu.747_b20191224
totolinkcp450
-
Ссылки
- https://github.com/n0wstr/IOTVuln/tree/main/CP450/CloudACMunualUpdate_injectionExploitThird Party Advisory
- https://github.com/n0wstr/IOTVuln/tree/main/CP450/CloudACMunualUpdate_injectionExploitThird Party Advisory