cve/2022/CVE-2022-28495.md
2024-06-18 02:51:15 +02:00

738 B

CVE-2022-28495

Description

TOTOLink outdoor CPE CP900 V6.3c.566_B20171026 is discovered to contain a command injection vulnerability in the setWebWlanIdx function via the webWlanIdx parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.

POC

Reference

Github

No PoCs found on GitHub currently.