← Back

CVE-2015-9550

nvd nist
Published: Nov 24, 2020Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

An issue was discovered on TOTOLINK A850R-V1 through 1.0.1-B20150707.1612 and F1-V2 through 1.1-B20150708.1646 devices. By sending a specific hel,xasf packet to the WAN interface, it is possible to open the web management interface on the WAN interface.

Affected (8)

8 products
A850r V1 Firmware
F1 V2 Firmware
F2 V1 Firmware
N150rt V2 Firmware
N151rt V2 Firmware
N300rh V2 Firmware
N300rh V3 Firmware
N300rt V2 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.0.1-b20150707.1612
Running on/withPlatform Versions
Totolink
A850r V1
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.1.1-b20150708.1646
Running on/withPlatform Versions
Totolink
F1 V2
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.1.0-b20150320.1611
Running on/withPlatform Versions
Totolink
F2 V1
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.1.1-b20150708.1548
Running on/withPlatform Versions
Totolink
N150rt V2
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.1-b20150708.1559
Running on/withPlatform Versions
Totolink
N151rt V2
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.0.1-b20150708.1625
Running on/withPlatform Versions
Totolink
N300rh V2
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0.0-b20150331.0858
Running on/withPlatform Versions
Totolink
N300rh V3
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.1.1-b20150708.1613
Running on/withPlatform Versions
Totolink
N300rt V2
All versions

References (2)

Timeline

No history available yet.