Command Injection Vulnerability in TOTOlink A7100RU Router
CVE-2023-27231
9.8CRITICAL
What is CVE-2023-27231?
A command injection vulnerability exists in TOTOlink A7100RU, allowing attackers to execute arbitrary commands through the downBw parameter in the /setting/setWanIeCfg endpoint. This flaw could enable unauthorized access and manipulation of router settings, jeopardizing the security and privacy of the network.