CVE-2023-37170 Information

Description

TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain an unauthenticated remote code execution (RCE) vulnerability via the lang parameter in the setLanguageCfg function.

Reference

https://github.com/kafroc/Vuls/tree/main/TOTOLINK/A3300R/cmdi_1

Share on: