Directory Indexing Vulnerability in TOTOLINK Router
CVE-2021-34218

5.3MEDIUM

Key Information:

Vendor
Totolink
Vendor
CVE Published:
20 August 2021

Summary

The directory indexing vulnerability in the TOTOLINK A702R router enables attackers to access sensitive directories such as /add/, /img/, /js/, and /mobile/ through a GET parameter. This can potentially expose critical information that may compromise the security of the device and its connected network.

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.