CVE-2023-29802
CVSS V2 None
CVSS V3 None
Description
TOTOLINK X18 V9.1.0cu.2024_B20220329 was discovered to contain a command injection vulnerability via the ip parameter in the setDiagnosisCfg function.
Overview
- CVE ID
- CVE-2023-29802
- Assigner
- cve@mitre.org
- Vulnerability Status
- Analyzed
- Published Version
- 2023-04-14T14:15:11
- Last Modified Date
- 2023-04-25T18:09:43
Weakness Enumerations
CPE Configuration (Product)
CPE | Vulnerable | Operator | Version Start | Version End |
---|---|---|---|---|
AND | ||||
cpe:2.3:o:totolink:x18_firmware:9.1.0cu.2021_b20220326:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:o:totolink:x18_firmware:9.1.0cu.2024_b20220329:*:*:*:*:*:*:* | 1 | OR | ||
cpe:2.3:h:totolink:x18:-:*:*:*:*:*:*:* | 0 | OR |
References
Reference URL | Reference Tags |
---|---|
https://sore-pail-31b.notion.site/Command-Injection-3-8eb94b608bcd48f8aa4e983d2d1c4526 |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-29802 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-29802 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2023-04-17 04:44:16 | Added to TrackCVE | |||
2023-04-18 12:00:20 | Awaiting Analysis | Undergoing Analysis | Vulnerability Status | updated |
2023-04-25 19:01:06 | 2023-04-25T18:09:43 | CVE Modified Date | updated | |
2023-04-25 19:01:06 | Undergoing Analysis | Analyzed | Vulnerability Status | updated |
2023-04-25 19:01:07 | Weakness Enumeration | new | ||
2023-04-25 19:01:09 | CPE Information | updated |