CVE-2023-33487
31.05.2023, 13:15
TOTOLINK X5000R V9.1.0u.6118_B20201102 and V9.1.0u.6369_B20230113 contains a command insertion vulnerability in setDiagnosisCfg.This vulnerability allows an attacker to execute arbitrary commands through the "ip" parameter.
Vendor | Product | Version |
---|---|---|
totolink | x5000r_firmware | 9.1.0u.6118_b20201102:u.6118_b20201102 |
totolink | x5000r_firmware | 9.1.0u.6369_b20230113:u.6369_b20230113 |
𝑥
= Vulnerable software versions