cve/2024/CVE-2024-42967.md
2025-09-29 16:08:36 +00:00

749 B

CVE-2024-42967

Description

Incorrect access control in TOTOLINK LR350 V9.3.5u.6369_B20220309 allows attackers to obtain the apmib configuration file, which contains the username and the password, via a crafted request to /cgi-bin/ExportSettings.sh.

POC

Reference

Github