296,854
Total vulnerabilities in the database
In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setWiFiWpsCfg. Authenticated Attackers can send malicious packet to execute arbitrary commands.
| Software | From | Fixed in |
|---|---|---|
| totolink / x5000r_firmware | 9.1.0u.6369_b20230113 | 9.1.0u.6369_b20230113.x |