CVE Published: Invalid date format |
CVE Updated: 19/08/2024 |
CVE Year: 2024 Source: mitre |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2024-35397 Description
TOTOLINK CP900L v4.1.5cu.798_B20221228 weas discovered to contain a command injection vulnerability in the NTPSyncWithHost function via the hostTime parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.