Vulnerabilities > Totolink > X5000R Firmware > 9.1.0u.6118.b20201102

DATE CVE VULNERABILITY TITLE RISK
2021-04-14 CVE-2021-27708 OS Command Injection vulnerability in Totolink A720R Firmware and X5000R Firmware
Command Injection in TOTOLINK X5000R router with firmware v9.1.0u.6118_B20201102, and TOTOLINK A720R router with firmware v4.1.5cu.470_B20200911 allows remote attackers to execute arbitrary OS commands by sending a modified HTTP request.
network
low complexity
totolink CWE-78
critical
9.8