Last year, I found some command injection problems on totolink ex200 products, but I found that this vulnerability does not only exist in ex200. Due to the uniformity of embedded device firmware of the manufacturer, this vulnerability will still exist if the same type of firmware is used in different devices。
I will sort out the devices with cve-2021-43711 type vulnerabilities and their affected firmware within a period of time
This vulnerability is very simple to exploit and does not require authentication
List of affected equipment(updating)
Here is a brother who sorted out all the device types and output the CVE ID
LINK : http://totolink.net/data/upload/20210111/c5bd257ad1a977679618faee0526bf0c.zip
Firmware: V5.9c.5185_B20201128
Describe
The downloadFile.cgi binary file has a command injection vulnerability when receiving GET parameters. The parameter name can be constructed for unauthenticated command execution