TOTOLINK A3002RU-V2.0.0 B20190814.1034 allows authenticated remote users to modify the system's 'Run Command'. An attacker can use this functionality to execute arbitrary OS commands on the router.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Totolink
Subscribe
|
A3002r
Subscribe
A3002r Firmware
Subscribe
A3002ru-v1
Subscribe
A3002ru-v1 Firmware
Subscribe
A3002ru-v2
Subscribe
A3002ru-v2 Firmware
Subscribe
A702r-v2
Subscribe
A702r-v2 Firmware
Subscribe
A702r-v3
Subscribe
A702r-v3 Firmware
Subscribe
N100re-v3
Subscribe
N100re-v3 Firmware
Subscribe
N150rt
Subscribe
N150rt Firmware
Subscribe
N200re-v3
Subscribe
N200re-v3 Firmware
Subscribe
N200re-v4
Subscribe
N200re-v4 Firmware
Subscribe
N210re
Subscribe
N210re Firmware
Subscribe
N300rh-v3
Subscribe
N300rh-v3 Firmware
Subscribe
N300rt
Subscribe
N300rt Firmware
Subscribe
N302r Plus
Subscribe
N302r Plus Firmware
Subscribe
|
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T15:33:05.689Z
Reserved: 2020-09-14T00:00:00
Link: CVE-2020-25499
No data.
Status : Modified
Published: 2020-12-09T21:15:15.477
Modified: 2024-11-21T05:18:04.130
Link: CVE-2020-25499
No data.
OpenCVE Enrichment
No data.