Remote Command Injection Vulnerability in TOTOLINK EX1200T V4.1.2cu.5215

Remote Command Injection Vulnerability in TOTOLINK EX1200T V4.1.2cu.5215

CVE-2021-42875 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in the function setDiagnosisCfg of the file lib/cste_modules/system.so to control the ipDoamin.

Learn more about our Web Application Penetration Testing UK.