An issue was discovered on TOTOLINK A850R-V1 through 1.0.1-B20150707.1612 and F1-V2 through 1.1-B20150708.1646 devices. There is Remote Code Execution in the management interface via the formSysCmd sysCmd parameter.
References
Link | Resource |
---|---|
https://pierrekim.github.io/blog/2015-07-16-backdoor-and-RCE-found-in-8-TOTOLINK-products.html | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-11-24T21:01:27
Updated: 2020-11-24T21:01:27
Reserved: 2020-11-24T00:00:00
Link: CVE-2015-9551
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-11-24T21:15:11.417
Modified: 2020-12-04T17:47:39.937
Link: CVE-2015-9551
JSON object: View
Redhat Information
No data.
CWE