CVE-2025-44846
01.05.2025, 17:15
TOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the recvUpgradeNewFw function via the fwUrl parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.
Vendor | Product | Version |
---|---|---|
totolink | ca600-poe_firmware | 5.3c.6665_b20180820*:c.6665_b20180820 |
𝑥
= Vulnerable software versions