Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
OS Command Injection in IPv6 PPPoE Configuration in TP-Link TL-WR940N
Vulnerability Description
An authenticated OS command injection vulnerability exists in the IPv6 PPPoE configuration handler in TL-WR940N v6 due to improper sanitization of user input. An attacker with administrative access may exploit this issue to execute arbitrary system commands with elevated privileges.
CVSS Information
N/A
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
TP-Link Systems Inc TL-WR940N v6 命令注入漏洞
Vulnerability Description
TP-Link Systems Inc TL-WR940N v6是TP-Link Systems Inc公司的一款无线路由器。 TP-Link Systems Inc TL-WR940N v6 V6_260528之前版本存在安全漏洞,该漏洞源于IPv6 PPPoE配置处理器中用户输入清理不当,可能导致经过身份验证的攻击者利用管理权限执行任意系统命令。
CVSS Information
N/A
Vulnerability Type
N/A