CVE-2024-35397
May 28, 2024, 5:11 p.m.
Tags
Product(s) Impacted
TOTOLINK CP900L
- 4.1.5cu.798_B20221228
Description
TOTOLINK CP900L v4.1.5cu.798_B20221228 weas discovered to contain a command injection vulnerability in the NTPSyncWithHost function via the hostTime parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.
Weaknesses
Date
Published: May 28, 2024, 3:15 p.m.
Last Modified: May 28, 2024, 5:11 p.m.
Status : Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
cve@mitre.org