cbcvebase.
CVE-2021-46009
published 2022-03-30

CVE-2021-46009: In Totolink A3100R V5.9c.4577, multiple pages can be read by curl or Burp Suite without authentication. Additionally, admin configurations can be set without…

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
In Totolink A3100R V5.9c.4577, multiple pages can be read by curl or Burp Suite without authentication. Additionally, admin configurations can be set without cookies.

Affected

1 ranges
VendorProductVersion rangeFixed in
totolinka3100r_firmware