An issue in TOTOLINK x18 v.9.1.0cu.2024_B20220329 allows a remote attacker to execute arbitrary code via the sub_410E54 function of the cstecgi.cgi.
References
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2025-04-03 20:15
Updated : 2025-04-29 16:22
NVD link : CVE-2025-29064
Mitre link : CVE-2025-29064
CVE.ORG link : CVE-2025-29064
JSON object : View
Products Affected
totolink
- x18
- x18_firmware
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
