← All CVEs

CVE-2019-19824

high · 8.8

A public exploit / detection template exists

Weaponised detection is publicly available, which meaningfully raises real-world risk regardless of CVSS. nuclei-templates

On certain TOTOLINK Realtek SDK based routers, an authenticated attacker may execute arbitrary OS commands via the sysCmd parameter to the boafrm/formSysCmd URI, even if the GUI (syscmd.htm) is not available. This allows for full control over the device's internals. This affects A3002RU through 2.0.0, A702R through 2.1.3, N301RT through 2.1.6, N302R through 3.4.0, N300RT through 3.4.0, N200RE through 4.0.0, N150RT through 3.4.0, N100RE through 3.4.0, and N302RE 2.0.2.

8.8
CVSS
25.1%
EPSS (exploit prob.)
98th
EPSS percentile
2020-01-27
Published

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-78

Affected products

VendorProductAffected versions
totolinka3002ru_firmware<= 2.0.0
totolinka3002ruall versions
totolinka702r_firmware<= 2.1.3
totolinka702rall versions
totolinkn301rt_firmware<= 2.1.6
totolinkn301rtall versions
totolinkn302r_firmware<= 3.4.0
totolinkn302rall versions
totolinkn300rt_firmware<= 3.4.0
totolinkn300rtall versions
totolinkn200re_firmware<= 4.0.0
totolinkn200reall versions
totolinkn150rt_firmware<= 3.4.0
totolinkn150rtall versions
totolinkn100re_firmware<= 3.4.0
totolinkn100reall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2019-19824