CVE-2022-32449
07.07.2022, 19:15
TOTOLINK EX300_V2 V4.0.3c.7484 was discovered to contain a command injection vulnerability via the langType parameter in the setLanguageCfg function. This vulnerability is exploitable via a crafted MQTT data packet.
Vendor | Product | Version |
---|---|---|
totolink | ex300_v2_firmware | 4.0.3c.7484:c.7484 |
𝑥
= Vulnerable software versions