CVE-2022-25134observed exploitation

CVE-2022-25134

Published · Updated

25Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Attendepss 3.0%
from disclosure to weapon
Published on NVDFeb 18
VulnCheck+182d
exploitation probability
3.0%top 13% of all CVEs
observed exploitation
yesVulnCheck
A command injection vulnerability in the function setUpgradeFW of TOTOLINK Technology router T6 V3_Firmware T6_V3_V4.1.5cu.748_B20211015 allows attackers to execute arbitrary commands via a crafted MQTT packet.
Affected products
n/a · n/a